First published: Wed Jul 14 2021(Updated: )
Multiple low security issues were discovered and fixed in a security audit of Mozilla VPN 2.x branch as part of a 3rd party security audit.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Mozilla VPN | <2.3 | 2.3 |
<2.3 | 2.3 | |
Mozilla Mozilla VPN | >=2.0<2.3 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2021-29978 is low.
Mozilla VPN 2.x branch up to version 2.3 is affected by CVE-2021-29978.
Upgrade to version 2.3 of Mozilla VPN to fix CVE-2021-29978.
You can find more information about CVE-2021-29978 in the following references: [GitHub issue 797](https://github.com/mozilla-mobile/mozilla-vpn-client/issues/797), [GitHub issue 798](https://github.com/mozilla-mobile/mozilla-vpn-client/issues/798), [GitHub issue 799](https://github.com/mozilla-mobile/mozilla-vpn-client/issues/799).