CVE-2021-29959 - log back

CVE-2021-29959 edited at 01 Jun 2021 19:38:18
Description
- When a user has already allowed a website to access microphone and camera, disabling camera sharing would not fully prevent the website from re-enabling it without an additional prompt. This was only possible if the website kept recording with the microphone until re-enabling the camera. This vulnerability affects Firefox < 89.
+ When a user has already allowed a website to access microphone and camera, disabling camera sharing would not fully prevent the website from re-enabling it without an additional prompt. This was only possible if the website kept recording with the microphone until re-enabling the camera.
References
https://www.mozilla.org/security/advisories/mfsa2021-23/
https://bugzilla.mozilla.org/show_bug.cgi?id=1395819
Notes
CVE-2021-29959 edited at 01 Jun 2021 13:17:15
Severity
- Unknown
+ Low
Remote
- Unknown
+ Remote
Type
- Unknown
+ Access restriction bypass
Description
+ When a user has already allowed a website to access microphone and camera, disabling camera sharing would not fully prevent the website from re-enabling it without an additional prompt. This was only possible if the website kept recording with the microphone until re-enabling the camera. This vulnerability affects Firefox < 89.
References
+ https://www.mozilla.org/security/advisories/mfsa2021-23/
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1395819
CVE-2021-29959 created at 01 Jun 2021 13:16:35