CVE-2021-29967
CVE-2021-29967
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 1.4%KEV nãoPoC —Nuclei —Metasploit —Patch referenciado
Ciclo de vida
24 jun 2021Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Mozilla developers reported memory safety bugs present in Firefox 88 and Firefox ESR 78.11. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 78.11, Firefox < 89, and Firefox ESR < 78.11.
¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1602862%2C1703191%2C1703760%2C1704722%2C1706041https://security.gentoo.org/glsa/202208-14https://www.mozilla.org/security/advisories/mfsa2021-23/https://www.mozilla.org/security/advisories/mfsa2021-24/https://www.mozilla.org/security/advisories/mfsa2021-26/