CVE-2021-38498
- EPSS 0.27%
- Veröffentlicht 03.11.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:17:15
During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 93, Thunderbird < 91.2, and Firefox ESR < 91....
CVE-2021-38500
- EPSS 0.69%
- Veröffentlicht 03.11.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:17:15
Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. T...
CVE-2021-38501
- EPSS 0.4%
- Veröffentlicht 03.11.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:17:15
Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. T...
CVE-2021-38502
- EPSS 0.46%
- Veröffentlicht 03.11.2021 01:15:07
- Zuletzt bearbeitet 21.11.2024 06:17:15
Thunderbird ignored the configuration to require STARTTLS security for an SMTP connection. A MITM could perform a downgrade attack to intercept transmitted messages, or could take control of the authenticated session to execute SMTP commands chosen b...
CVE-2021-40529
- EPSS 0.3%
- Veröffentlicht 06.09.2021 19:15:07
- Zuletzt bearbeitet 21.11.2024 06:24:20
The ElGamal implementation in Botan through 2.18.1, as used in Thunderbird and other products, allows plaintext recovery because, during interaction between two cryptographic libraries, a certain dangerous combination of the prime defined by the rece...
CVE-2021-29988
- EPSS 0.45%
- Veröffentlicht 17.08.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:02:07
Firefox incorrectly treated an inline list-item element as a block element, resulting in an out of bounds read or memory corruption, and a potentially exploitable crash. This vulnerability affects Thunderbird < 78.13, Thunderbird < 91, Firefox ESR < ...
CVE-2021-29989
- EPSS 0.35%
- Veröffentlicht 17.08.2021 20:15:08
- Zuletzt bearbeitet 21.11.2024 06:02:07
Mozilla developers reported memory safety bugs present in Firefox 90 and Firefox ESR 78.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. ...
CVE-2021-29980
- EPSS 0.45%
- Veröffentlicht 17.08.2021 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:02:06
Uninitialized memory in a canvas object could have caused an incorrect free() leading to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 78.13, Thunderbird < 91, Firefox ESR < 78.13, and Firefox < 91.
CVE-2021-29981
- EPSS 0.45%
- Veröffentlicht 17.08.2021 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:02:06
An issue present in lowering/register allocation could have led to obscure but deterministic register confusion failures in JITted code that would lead to a potentially exploitable crash. This vulnerability affects Firefox < 91 and Thunderbird < 91.
CVE-2021-29982
- EPSS 0.38%
- Veröffentlicht 17.08.2021 20:15:07
- Zuletzt bearbeitet 21.11.2024 06:02:06
Due to incorrect JIT optimization, we incorrectly interpreted data from the wrong type of object, resulting in the potential leak of a single bit of memory. This vulnerability affects Firefox < 91 and Thunderbird < 91.