CERT-In Vulnerability Note
CIVN-2020-0447
Multiple Vulnerabilities in Mozilla Products
Original Issue Date:December 24, 2020
Severity Rating: HIGH
Software Affected
- Mozilla Firefox versions prior to 84
- Mozilla Firefox ESR versions prior to 78.6
- Mozilla Thunderbird versions prior to 78.6
Overview
Multiple vulnerabilities have been reported in Mozilla products which could allow a remote attacker to execute arbitrary code, perform spoofing attacks, disclose potentially sensitive information, or cause denial of service conditions on the targeted system.
Description
These vulnerabilities exist in Mozilla products due to uninitialized memory error in BigInt, heap buffer overflow error or use-after-free in WebGL, improper sanitization of CSS Sanitizer, use-after-free in StyleGenericFlexBasis, improper security restrictions, improper processing of user supplied i
CERT-IN - Computer Emergency Response Team - Page Requested Currently Not available
CERT-IN - Computer Emergency Response Team - Page Requested Currently Not available
|