CVE-2021-29972: Use After Free
A use-after-free vulnerability was found via testing, and traced to an out-of-date Cairo library. Updating the library resolved the issue, and may have remediated other, unknown security vulnerabilities as well. This vulnerability affects Firefox < 90.
Other sources
A user-after-free vulnerability was found via testing, and traced to an out-of-date Cairo library. Updating the library resolved the issue, and may have remediated other, unknown security vulnerabilities as well.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is CVE-2021-29972?
CVE-2021-29972 is a user-after-free vulnerability in an out-of-date Cairo library found in Mozilla Firefox.
How severe is CVE-2021-29972?
CVE-2021-29972 has a severity rating of medium.
How can I fix CVE-2021-29972?
To fix CVE-2021-29972, update your Mozilla Firefox browser to version 90 or higher.
Is there any additional information about CVE-2021-29972?
Yes, more information about CVE-2021-29972 can be found in the Mozilla security advisory: https://www.mozilla.org/en-US/security/advisories/mfsa2021-28/