First published: Tue Dec 07 2021(Updated: )
When transitioning in and out of fullscreen mode, a graphics object was not correctly protected; resulting in memory corruption and a potentially exploitable crash.<br>*This bug only affects Firefox on MacOS. Other operating systems are unaffected.*. This vulnerability affects Firefox < 95.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox | <95 | 95 |
Firefox | <95.0 | |
Apple iOS and macOS |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2021-4128 is classified as having a high severity due to potential memory corruption and exploitation risks.
To fix CVE-2021-4128, update Firefox to version 95 or higher.
CVE-2021-4128 affects users running Firefox versions prior to 95 on MacOS.
CVE-2021-4128 is a memory corruption vulnerability that occurs during fullscreen transitions.
Yes, CVE-2021-4128 could potentially be exploited to cause crashes on affected systems.