CVE-2021-32810 log

Source
Severity Medium
Remote Yes
Type Information disclosure
Description
In the crossbeam crate, one or more tasks in the worker queue could have been be popped twice instead of other tasks that are forgotten and never popped. If tasks are allocated on the heap, this could have caused a double free and a memory leak.
Group Package Affected Fixed Severity Status Ticket
AVG-2459 thunderbird 91.1.2-1 91.2.0-1 High Fixed
AVG-2443 firefox 92.0.1-1 93.0-1 High Fixed
References
https://www.mozilla.org/security/advisories/mfsa2021-43/
https://www.mozilla.org/security/advisories/mfsa2021-47/
https://bugzilla.mozilla.org/show_bug.cgi?id=1729813
https://github.com/crossbeam-rs/crossbeam/security/advisories/GHSA-pqqp-xmhj-wgcw