Friday, November 5, 2021

MFSA2021-50 Thunderbird: Security Vulnerabilities fixed in Thunderbird 91.3 (CVE-2021-38504)

Description
When interacting with an HTML input element's file picker dialog with webkitdirectory set, a use-after-free could have resulted, leading to memory corruption and a potentially exploitable crash.
Solution(s)
  • mozilla-thunderbird-upgrade-91_3


  • References
  • https://attackerkb.com/topics/cve-2021-38504
  • CVE - 2021-38504
  • http://www.mozilla.org/security/announce/2021/mfsa2021-50.html




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore