Related Vulnerabilities: CVE-2021-43537  

A security issue has been found in Firefox before version 95 and Thunderbird before version 91.4.0. An incorrect type conversion of sizes from 64bit to 32bit integers allowed an attacker to corrupt memory leading to a potentially exploitable crash.

Severity High

Remote Yes

Type Arbitrary code execution

Description

A security issue has been found in Firefox before version 95 and Thunderbird before version 91.4.0. An incorrect type conversion of sizes from 64bit to 32bit integers allowed an attacker to corrupt memory leading to a potentially exploitable crash.

AVG-2608 thunderbird 91.3.2-2 High Vulnerable

AVG-2606 firefox 94.0.2-2 95.0-1 High Fixed

https://www.mozilla.org/security/advisories/mfsa2021-52/
https://www.mozilla.org/security/advisories/mfsa2021-54/
https://bugzilla.mozilla.org/show_bug.cgi?id=1738237