Saturday, December 11, 2021

MFSA2021-54 Thunderbird: Security Vulnerabilities fixed in Thunderbird 91.4.0 (CVE-2021-43539)

Description
Failure to correctly record the location of live pointers across wasm instance calls resulted in a GC occurring within the call not tracing those live pointers. This could have led to a use-after-free causing a potentially exploitable crash.
Solution(s)
  • mozilla-thunderbird-upgrade-91_4


  • References
  • https://attackerkb.com/topics/cve-2021-43539
  • CVE - 2021-43539
  • http://www.mozilla.org/security/announce/2021/mfsa2021-54.html




  •  

    Copyright © 2021 Vulnerability Database | Cyber Details™

    thank you Templateism for the design - You should have written the code a little more complicated - Nothing Encrypted anymore