RULE(RULE ID:333479)

Rule General Information
Release Date: 2021-04-16
Rule Name: Mozilla Firefox Use-After-Free Vulnerability (CVE-2016-9899)
Severity:
CVE ID:
Rule Protection Details
Description: Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.
Impact: A use-after-free vulnerability can be exploited by an attacker in the vulnerable product. Successful exploit may cause some adverse consequences, such as crash of the product, execution of arbitrary code.
Affected OS: Windows, Linux, Others
Reference: SecurityFocusBID:94885
ExploitDB:41042
http://rhn.redhat.com/errata/RHSA-2016-2946.html
http://rhn.redhat.com/errata/RHSA-2016-2973.html
Solutions
The vendor has released upgrade patches to fix vulnerabilities, please visit:
https://www.mozilla.org/en-US/security/advisories/mfsa2016-94/