#VU24059 Race condition in Mozilla Firefox and Firefox ESR - CVE-2019-17021
Published: January 7, 2020 / Updated: January 8, 2020
Mozilla Firefox
Firefox ESR
Mozilla
Description
The vulnerability allows a remote attacker to gain access to sensitive information.
The vulnerability exists due to a race condition that occurs during the initialization of a new content process. A remote attacker can exploit the race to gain access to potentially sensitive information, such as heap addresses from the parent process.
Note, this vulnerability affects Windows users only.