Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-23997

Опубликовано: 24 июн. 2021
Источник: debian
EPSS Низкий

Описание

Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 88.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed88.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2021-16/#CVE-2021-23997

EPSS

Процентиль: 57%
0.00349
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
больше 4 лет назад

Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 88.

CVSS3: 8.8
nvd
больше 4 лет назад

Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 88.

github
больше 3 лет назад

Due to unexpected data type conversions, a use-after-free could have occurred when interacting with the font cache. We presume that with enough effort this could have been exploited to run arbitrary code. This vulnerability affects Firefox < 88.

EPSS

Процентиль: 57%
0.00349
Низкий