After a VR Process is destroyed, a reference to it may have been retained and used, leading to a use-after-free and potentially exploitable crash. This vulnerability affects Thunderbird < 91.8 and Firefox ESR < 91.8.
"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2022-1196.json"
[ { "events": [ { "introduced": "0" }, { "fixed": "91.8" } ] }, { "events": [ { "introduced": "0" }, { "fixed": "91.8" } ] } ]