VDB

GCVE-VVD-MAGEIA-2019-116

GCVE-VVD-MAGEIA-2019-116
Advisory Published
Vulnetix · Advisory published September 6, 2019
Proxy Auto-Configuration file can define localhost access to be proxied (CVE-2018-18506). Memory safety bugs fixed in Firefox 66 and Firefox ESR 60.6 (CVE-2019-9788). Use-after-free when removing in-use DOM elements (CVE-2019-9790). Type inference is incorrect for constructors entered through on-stack replacement with IonMonkey (CVE-2019-9791). IonMonkey leaks JS_OPTIMIZED_OUT magic value to script (CVE-2019-9792). Improper bounds checks when Spectre mitigations are disabled (CVE-2019-9793). Type-confusion in IonMonkey JIT compiler (CVE-2019-9795). Use-after-free with SMIL animation controller (CVE-2019-9796).

Affected Products

VendorProductVersionsPlatforms
Mageialibplist0 (affected), 2.0.0-3.git20190813.1.mga7 (unaffected)
Mageialibusbmuxd0 (affected), 1.1.0-0.git20190802.1.mga7 (unaffected)
Mageialibimobiledevice0 (affected), 1.2.1-0.git20190818.1.mga7 (unaffected)
Mageiausbmuxd0 (affected), 1.1.1-0.git20190716.1.mga7 (unaffected)
Mageiafirefox0 (affected), 60.6.0-2.mga6 (unaffected), 0 (affected), 60.6.0-2.mga6 (unaffected)
Mageiafirefox-l10n0 (affected), 60.6.0-1.mga6 (unaffected), 0 (affected), 60.6.0-1.mga6 (unaffected)
Mageianspr0 (affected), 4.21-1.mga6 (unaffected), 0 (affected), 4.21-1.mga6 (unaffected)
Mageiarootcerts0 (affected), 20190306.00-1.mga6 (unaffected), 0 (affected), 20190306.00-1.mga6 (unaffected)
Mageianss0 (affected), 3.36.7-1.1.mga6 (unaffected), 0 (affected), 3.36.7-1.1.mga6 (unaffected)

Browse GCVE Records

100 records in the GCVE database · Updated April 16, 2026

No matching records found.

Explore Further

Investigate this vulnerability in the interactive console or download the raw GCVE record.

$ Console Community · 100/wk Open console ›