Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Mozilla Firefox Security Update (mfsa_2021-13_2021-16) - Windows

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

10.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

3 years ago

Modified

Modified

2 years ago

Summary

The host is installed with Mozilla Firefox and is prone to multiple vulnerabilities.

Insight

Insight

Multiple flaws exist due to, - An out of bound write due to lazy initialization. - An use-after-free in Responsive Design Mode. - Content rendered outside of webpage viewport. - An use-after-free when freeing fonts from cache. - Secure Lock icon could have been spoofed. - Blob URLs may have been granted additional privileges. - 'requestPointerLock' function could be applied to a tab different from the visible tab. - Testing code could have enabled session history manipulations by a compromised content process. - Arbitrary FTP command execution on FTP servers using an encoded URL. - Port blocking could be bypassed. - Memory safety bugs.

Affected Software

Affected Software

Mozilla Firefox version before 88 on Windows.

Detection Method

Detection Method

Checks if a vulnerable version is present on the target host.

Solution

Solution

Upgrade to Mozilla Firefox version 88 or later. Please see the references for more information.