Endpoint Vulnerability

Uninitialized data in IonMonkey

Description

Software developer Dan Gohman of Google reported uninitialized data and variables in the IonMonkey Javascript engine when running the engine in Valgrind mode. This could be combined with additional exploits to allow the reading and use of previously allocated memory in some circumstances.

Affected Products

Firefox

References

CVE-2013-1728,