Saturday, December 11, 2021

MFSA2021-52 Firefox: Security Vulnerabilities fixed in Firefox 95 (CVE-2021-43539)

Description
Failure to correctly record the location of live pointers across wasm instance calls resulted in a GC occurring within the call not tracing those live pointers. This could have led to a use-after-free causing a potentially exploitable crash.
Solution(s)
  • mozilla-firefox-upgrade-95_0


  • References
  • https://attackerkb.com/topics/cve-2021-43539
  • CVE - 2021-43539
  • http://www.mozilla.org/security/announce/2021/mfsa2021-52.html




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore