CVE-2021-23977 - log back

CVE-2021-23977 edited at 23 Feb 2021 18:55:17
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Local
Type
- Unknown
+ Information disclosure
Description
+ Firefox for Android before version 86.0 suffered from a time-of-check-time-of-use vulnerability that allowed a malicious application to read sensitive data from application directories.
+
+ Note: This issue is only affected Firefox for Android. Other operating systems are unaffected.
References
+ https://www.mozilla.org/en-US/security/advisories/mfsa2021-07/#CVE-2021-23977
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1684761
Notes
CVE-2021-23977 created at 23 Feb 2021 18:42:31