ZeroHour

CVE-2021-23995

CVSS 3.1
8.8 high
EPSS
1%p66
Published
()
Modified
Description

When Responsive Design Mode was enabled, it used references to objects that were previously freed. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 78.10, Thunderbird < 78.10, and Firefox < 88.

Vendors
mozilla
Products
firefox, firefox esr, thunderbird
Weakness
CWE-672
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.