Saturday, December 11, 2021

MFSA2021-54 Thunderbird: Security Vulnerabilities fixed in Thunderbird 91.4.0 (CVE-2021-43539)

Failure to correctly record the location of live pointers across wasm instance calls resulted in a GC occurring within the call not tracing those live pointers. This could have led to a use-after-free causing a potentially exploitable crash.
  • mozilla-thunderbird-upgrade-91_4

  • References
  • CVE - 2021-43539


