First published: Fri Apr 03 2020(Updated: )
Last updated 21 August 2024
Credit: security@mozilla.org security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Thunderbird | <68.7 | 68.7 |
Mozilla Firefox | <74.0.1 | 74.0.1 |
Mozilla Firefox ESR | <68.6.1 | 68.6.1 |
Mozilla Firefox | <74.0.1 | |
Mozilla Firefox ESR | <68.6.1 | |
Mozilla Thunderbird | <68.7.0 | |
Mozilla Firefox and Thunderbird | ||
debian/firefox | 132.0.1-1 | |
debian/firefox-esr | 115.14.0esr-1~deb11u1 128.4.0esr-1~deb11u1 128.3.1esr-1~deb12u1 128.4.0esr-1~deb12u1 128.3.1esr-2 128.4.0esr-1 | |
debian/thunderbird | 1:115.12.0-1~deb11u1 1:128.4.0esr-1~deb11u1 1:115.16.0esr-1~deb12u1 1:128.4.0esr-1~deb12u1 1:128.4.0esr-1 1:128.4.2esr-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-6819 is a use-after-free vulnerability in Mozilla Firefox and Thunderbird.
Thunderbird < 68.7.0, Firefox < 74.0.1, and Firefox ESR < 68.6.1 are affected by CVE-2020-6819.
CVE-2020-6819 has a severity rating of 8.1 (critical).
Yes, there are targeted attacks in the wild abusing this vulnerability.
Update Thunderbird to version >= 68.7.0, Firefox to version >= 74.0.1, or Firefox ESR to version >= 68.6.1 to fix CVE-2020-6819.