CVE-2021-29964 - log back

CVE-2021-29964 edited at 01 Jun 2021 19:39:36
Description
A locally-installed hostile program could send `WM_COPYDATA` messages that Firefox would process incorrectly, leading to an out-of-bounds read.
- This bug only affects Firefox on Windows. Other operating systems are unaffected. This vulnerability affects Firefox < 89.
+ This bug only affects Firefox on Windows. Other operating systems are unaffected.
References
https://www.mozilla.org/security/advisories/mfsa2021-23/
https://bugzilla.mozilla.org/show_bug.cgi?id=1706501
Notes
CVE-2021-29964 edited at 01 Jun 2021 13:17:15
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Information disclosure
Description
+ A locally-installed hostile program could send `WM_COPYDATA` messages that Firefox would process incorrectly, leading to an out-of-bounds read.
+
+ This bug only affects Firefox on Windows. Other operating systems are unaffected. This vulnerability affects Firefox < 89.
References
+ https://www.mozilla.org/security/advisories/mfsa2021-23/
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1706501
CVE-2021-29964 created at 01 Jun 2021 13:16:58