CVE-2021-23978 - log back

CVE-2021-23978 edited at 23 Feb 2021 19:05:05
Description
- A security issue was found in Firefox before version 86.0. Mozilla developers reported memory safety bugs present in Firefox 85 and Firefox ESR 78.7. Some of these bugs showed evidence of memory corruption and Mozilla presumes that with enough effort some of these could have been exploited to run arbitrary code.
+ A security issue was found in Firefox before version 86.0 and Thunderbird before version 78.8. Mozilla developers reported memory safety bugs present in Firefox 85, Firefox ESR 78.7 and Thunderbird 78.7. Some of these bugs showed evidence of memory corruption and Mozilla presumes that with enough effort some of these could have been exploited to run arbitrary code.
References
https://www.mozilla.org/en-US/security/advisories/mfsa2021-07/#CVE-2021-23978
+ https://www.mozilla.org/en-US/security/advisories/mfsa2021-09/#CVE-2021-23978
https://bugzilla.mozilla.org/buglist.cgi?bug_id=786797%2C1682928%2C1687391%2C1687597
CVE-2021-23978 edited at 23 Feb 2021 18:56:22
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary code execution
Description
+ A security issue was found in Firefox before version 86.0. Mozilla developers reported memory safety bugs present in Firefox 85 and Firefox ESR 78.7. Some of these bugs showed evidence of memory corruption and Mozilla presumes that with enough effort some of these could have been exploited to run arbitrary code.
References
+ https://www.mozilla.org/en-US/security/advisories/mfsa2021-07/#CVE-2021-23978
+ https://bugzilla.mozilla.org/buglist.cgi?bug_id=786797%2C1682928%2C1687391%2C1687597
Notes
CVE-2021-23978 created at 23 Feb 2021 18:42:31