In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. External Reference: https://www.mozilla.org/en-US/security/advisories/mfsa2020-49/#CVE-2020-26950
Acknowledgments: Name: the Mozilla project Upstream: 360政企安全漏洞研究院 in Tianfu Cup 2020 International Cybersecurity Contest
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2020:5100 https://access.redhat.com/errata/RHSA-2020:5100
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2020:5099 https://access.redhat.com/errata/RHSA-2020:5099
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Via RHSA-2020:5104 https://access.redhat.com/errata/RHSA-2020:5104
This bug is now closed. Further updates for individual products will be reflected on the CVE page(s): https://access.redhat.com/security/cve/cve-2020-26950
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.1 Extended Update Support Via RHSA-2020:5135 https://access.redhat.com/errata/RHSA-2020:5135
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions Via RHSA-2020:5138 https://access.redhat.com/errata/RHSA-2020:5138
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Extended Update Support Via RHSA-2020:5139 https://access.redhat.com/errata/RHSA-2020:5139
This issue has been addressed in the following products: Red Hat Enterprise Linux 8 Via RHSA-2020:5146 https://access.redhat.com/errata/RHSA-2020:5146
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.0 Update Services for SAP Solutions Via RHSA-2020:5167 https://access.redhat.com/errata/RHSA-2020:5167
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.1 Extended Update Support Via RHSA-2020:5166 https://access.redhat.com/errata/RHSA-2020:5166
This issue has been addressed in the following products: Red Hat Enterprise Linux 8.2 Extended Update Support Via RHSA-2020:5162 https://access.redhat.com/errata/RHSA-2020:5162
This issue has been addressed in the following products: Red Hat Enterprise Linux 6 Via RHSA-2020:5164 https://access.redhat.com/errata/RHSA-2020:5164
This issue has been addressed in the following products: Red Hat Enterprise Linux 7 Via RHSA-2020:5163 https://access.redhat.com/errata/RHSA-2020:5163