When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
| Software | From | Fixed in |
|---|---|---|
| mozilla / firefox | - | 71.0 |
| mozilla / firefox_esr | - | 68.3 |
| mozilla / thunderbird | - | 68.3 |
| opensuse / leap | 15.1 | 15.1.x |