Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Mozilla Firefox Security Update (mfsa_2021-10_2021-12) - Windows

Information

Severity

Severity

Medium

Family

Family

General

CVSSv2 Base

CVSSv2 Base

6.8

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:M/Au:N/C:P/I:P/A:P

Solution Type

Solution Type

Vendor Patch

Created

Created

3 years ago

Modified

Modified

3 years ago

Summary

The host is installed with Mozilla Firefox and is prone to multiple vulnerabilities.

Insight

Insight

Multiple flaws exist due to, - Texture upload into an unbound backing buffer resulted in an out-of-bound read. - Internal network hosts could have been probed by a malicious webpage. - Transitions for invalid ::marker properties resulted in memory corruption. - Malicious extensions could have spoofed popup information. - Devtools remote debugging feature could have been enabled without indication to the user. - A malicious extension could have performed credential-less same origin policy violations. - Memory safety bugs.

Affected Software

Affected Software

Mozilla Firefox version before 87 on Windows.

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Upgrade to Mozilla Firefox version 87 or later. Please see the references for more information.