CVE-2019-9805: Critical severity firefox vulnerability
Published Mar 19, 2019
·Updated
A latent vulnerability exists in the Prio library where data may be read from uninitialized memory for some functions, leading to potential memory corruption.
Affected Software
3 affected componentsFixes available
Mozilla Firefox<66
66
Mozilla Firefox<66.0
debian/firefox
137.0.1-1
Event History
Mar 19, 2019
CVE Published
12:00 AM
Apr 26, 2019
CVE Published
via MITRE·04:13 PM
Data Sourced
via MITRE·04:13 PM
DescriptionWeakness
Jan 11, 2024
Data Sourced
via Launchpad·11:33 PM
Description
Sep 16, 2024
Data Sourced
via Ubuntu·02:18 AM
RemedyDescriptionSeverityAffected Software
Mar 27, 2025
Data Sourced
via Debian·04:11 AM
DescriptionAffected Software
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the vulnerability ID for this latent vulnerability in the Prio library?
The vulnerability ID is CVE-2019-9805.
2
What is the severity level of CVE-2019-9805?
The severity level of CVE-2019-9805 is critical with a value of 9.8.
3
Which software products are affected by CVE-2019-9805?
Firefox versions prior to 66 are affected by CVE-2019-9805.
4
How can the vulnerability be exploited?
The vulnerability can be exploited by reading data from uninitialized memory in the Prio library, leading to potential memory corruption.
5
Where can I find more information about CVE-2019-9805?
You can find more information about CVE-2019-9805 at the following references: [Bugzilla](https://bugzilla.mozilla.org/show_bug.cgi?id=1521360), [Mozilla Security Advisories](https://www.mozilla.org/en-US/security/advisories/mfsa2019-07/)