A vulnerability can occur when capturing a media stream when the media source type is changed as the capture is occurring. This can result in stream data being cast to the wrong type causing a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox < 61.
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "firefox",
"binary_version": "61.0+build3-0ubuntu0.14.04.2"
},
{
"binary_name": "firefox-dev",
"binary_version": "61.0+build3-0ubuntu0.14.04.2"
},
{
"binary_name": "firefox-globalmenu",
"binary_version": "61.0+build3-0ubuntu0.14.04.2"
},
{
"binary_name": "firefox-mozsymbols",
"binary_version": "61.0+build3-0ubuntu0.14.04.2"
},
{
"binary_name": "firefox-testsuite",
"binary_version": "61.0+build3-0ubuntu0.14.04.2"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "firefox",
"binary_version": "61.0+build3-0ubuntu0.16.04.2"
},
{
"binary_name": "firefox-dev",
"binary_version": "61.0+build3-0ubuntu0.16.04.2"
},
{
"binary_name": "firefox-globalmenu",
"binary_version": "61.0+build3-0ubuntu0.16.04.2"
},
{
"binary_name": "firefox-mozsymbols",
"binary_version": "61.0+build3-0ubuntu0.16.04.2"
},
{
"binary_name": "firefox-testsuite",
"binary_version": "61.0+build3-0ubuntu0.16.04.2"
}
]
}
{
"availability": "No subscription required",
"binaries": [
{
"binary_name": "firefox",
"binary_version": "61.0+build3-0ubuntu0.18.04.1"
},
{
"binary_name": "firefox-dev",
"binary_version": "61.0+build3-0ubuntu0.18.04.1"
},
{
"binary_name": "firefox-globalmenu",
"binary_version": "61.0+build3-0ubuntu0.18.04.1"
},
{
"binary_name": "firefox-mozsymbols",
"binary_version": "61.0+build3-0ubuntu0.18.04.1"
},
{
"binary_name": "firefox-testsuite",
"binary_version": "61.0+build3-0ubuntu0.18.04.1"
}
]
}