First published: Tue Jul 13 2021(Updated: )
A use-after-free vulnerability was found via testing, and traced to an out-of-date Cairo library. Updating the library resolved the issue, and may have remediated other, unknown security vulnerabilities as well. This vulnerability affects Firefox < 90.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <90 | 90 |
<90 | 90 | |
Mozilla Firefox | <90.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-29972 is a user-after-free vulnerability in an out-of-date Cairo library found in Mozilla Firefox.
CVE-2021-29972 has a severity rating of medium.
To fix CVE-2021-29972, update your Mozilla Firefox browser to version 90 or higher.
Yes, more information about CVE-2021-29972 can be found in the Mozilla security advisory: https://www.mozilla.org/en-US/security/advisories/mfsa2021-28/