Endpoint Vulnerability

Use-after-free deleting tables from a contenteditable document

Description

Security researcher firehack used the Address Sanitizer tool to discover a use-after-free in contenteditable mode. This occurs when deleting document object model (DOM) table elements created within the editor and results in a potentially exploitable crash.

Affected Products

Firefox

References

CVE-2016-2821,