CVE-2021-29977: High severity firefox vulnerability
Mozilla developers Andrew McCreight, Tyson Smith, Christian Holler, and Gabriele Svelto reported memory safety bugs present in Firefox 89. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code.
Other sources
Mozilla developers reported memory safety bugs present in Firefox 89. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 90.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2021-29977?
CVE-2021-29977 has a high severity rating due to potential memory corruption that could allow for arbitrary code execution.
How do I fix CVE-2021-29977?
To fix CVE-2021-29977, update Mozilla Firefox to version 90 or later.
What versions of Firefox are affected by CVE-2021-29977?
CVE-2021-29977 affects Mozilla Firefox versions prior to 90.
Can CVE-2021-29977 be exploited remotely?
Yes, CVE-2021-29977 could potentially be exploited remotely if a user visits a specially crafted website.
Who reported CVE-2021-29977?
CVE-2021-29977 was reported by Mozilla developers Andrew McCreight, Tyson Smith, Christian Holler, and Gabriele Svelto.