CVE-2021-29970 - log back

CVE-2021-29970 edited at 13 Jul 2021 18:28:40
Description
- A malicious webpage could have triggered a use-after-free, memory corruption, and a potentially exploitable crash. This bug only affected Firefox when accessibility was enabled.
+ A malicious webpage could have triggered a use-after-free, memory corruption, and a potentially exploitable crash. This bug only affected Firefox before version 90 and Thunderbird before version 78.12 when accessibility was enabled.
References
https://www.mozilla.org/security/advisories/mfsa2021-28/
+ https://www.mozilla.org/security/advisories/mfsa2021-30/
https://bugzilla.mozilla.org/show_bug.cgi?id=1709976
- https://www.mozilla.org/security/advisories/mfsa2021-30/
CVE-2021-29970 edited at 13 Jul 2021 18:26:25
References
https://www.mozilla.org/security/advisories/mfsa2021-28/
https://bugzilla.mozilla.org/show_bug.cgi?id=1709976
+ https://www.mozilla.org/security/advisories/mfsa2021-30/
CVE-2021-29970 created at 13 Jul 2021 15:30:47
Severity
+ High
Remote
+ Remote
Type
+ Arbitrary code execution
Description
+ A malicious webpage could have triggered a use-after-free, memory corruption, and a potentially exploitable crash. This bug only affected Firefox when accessibility was enabled.
References
+ https://www.mozilla.org/security/advisories/mfsa2021-28/
+ https://bugzilla.mozilla.org/show_bug.cgi?id=1709976
Notes