6.8
CVSSv2

CVE-2021-29967

Published: 24/06/2021 Updated: 09/12/2022
CVSS v2 Base Score: 6.8 | Impact Score: 6.4 | Exploitability Score: 8.6
CVSS v3 Base Score: 8.8 | Impact Score: 5.9 | Exploitability Score: 2.8
VMScore: 605
Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

Mozilla developers reported memory safety bugs present in Firefox 88 and Firefox ESR 78.11. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 78.11, Firefox < 89, and Firefox ESR < 78.11.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox esr

mozilla thunderbird

mozilla firefox

Vendor Advisories

Multiple security issues were discovered in Thunderbird, which could result in the execution of arbitrary code In adddition two security issues were addressed in the OpenPGP support For the stable distribution (buster), these problems have been fixed in version 1:78110-1~deb10u1 We recommend that you upgrade your thunderbird packages For the ...
Multiple security issues have been found in the Mozilla Firefox web browser, which could potentially result in the execution of arbitrary code For the stable distribution (buster), this problem has been fixed in version 78110esr-1~deb10u1 We recommend that you upgrade your firefox-esr packages For the detailed security status of firefox-esr pl ...
OpenPGP secret keys that were imported using Thunderbird version 7881 up to version 78101 were stored unencrypted on the user's local disk The master password protection was inactive for those keys Version 78102 will restore the protection mechanism for newly imported keys, and will automatically protect keys that had been imported using af ...
No description is available for this CVE ...
Mozilla developers reported memory safety bugs present in Firefox 88 Some of these bugs showed evidence of memory corruption and Mozilla presumes that with enough effort some of these could have been exploited to run arbitrary code This vulnerability affects Firefox &lt; 89 ...
Mozilla Foundation Security Advisory 2021-26 Security Vulnerabilities fixed in Thunderbird 7811 Announced June 3, 2021 Impact moderate Products Thunderbird Fixed in Thunderbird 7811 ...
Mozilla Foundation Security Advisory 2021-23 Security Vulnerabilities fixed in Firefox 89 Announced June 1, 2021 Impact high Products Firefox Fixed in Firefox 89 ...
Mozilla Foundation Security Advisory 2021-24 Security Vulnerabilities fixed in Firefox ESR 7811 Announced June 1, 2021 Impact moderate Products Firefox ESR Fixed in Firefox ESR 7811 ...