Multiple vulnerabilities in Mozilla Firefox



Published: 2021-08-10
Risk High
Patch available YES
Number of vulnerabilities 11
CVE-ID CVE-2021-29986
CVE-2021-29981
CVE-2021-29988
CVE-2021-29983
CVE-2021-29984
CVE-2021-29980
CVE-2021-29985
CVE-2021-29989
CVE-2021-29987
CVE-2021-29982
CVE-2021-29990
CWE-ID CWE-119
CWE-20
CWE-125
CWE-399
CWE-416
CWE-357
CWE-843
Exploitation vector Network
Public exploit Public exploit code for vulnerability #7 is available.
Vulnerable software
Subscribe
Mozilla Firefox
Client/Desktop applications / Web browsers

Firefox ESR
Client/Desktop applications / Web browsers

Firefox for Android
Mobile applications / Apps for mobile phones

Vendor Mozilla

Security Bulletin

This security bulletin contains information about 11 vulnerabilities.

1) Buffer overflow

EUVDB-ID: #VU55678

Risk: High

CVSSv3.1:

CVE-ID: CVE-2021-29986

CWE-ID: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

Exploit availability: No

Description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a race condition in getaddrinfowhen resolving DNS names. A remote attacker can create a specially crafted web page, trick the victim into opening it, trigger memory corruption and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.

Note, the vulnerability affects Linux systems only.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 60.0 - 90.0.2

Firefox ESR: 78.0 - 78.12.0, 68.0 - 68.12.0, 60.0 - 60.9.0


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/
http://www.mozilla.org/en-US/security/advisories/mfsa2021-34/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

2) Input validation error

EUVDB-ID: #VU55679

Risk: High

CVSSv3.1:

CVE-ID: CVE-2021-29981

CWE-ID: CWE-20 - Improper Input Validation

Exploit availability: No

Description

The vulnerability allows a remote attacker to compromise the affected system.

The vulnerability exists due to insufficient validation of user-supplied input when lowering/register allocation during live range splitting. A remote attacker can create a specially crafted web page, trick the victim into visiting it, trigger register confusion failures in JITted code and execute arbitrary code on the system.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 80.0 - 90.0.2


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

3) Out-of-bounds read

EUVDB-ID: #VU55680

Risk: High

CVSSv3.1:

CVE-ID: CVE-2021-29988

CWE-ID: CWE-125 - Out-of-bounds Read

Exploit availability: No

Description

The vulnerability allows a remote attacker to compromise the affected system.

The vulnerability exists due to a boundary condition when treating inline list-item element as a block element. A remote attacker can create a specially crafted web page, trick the victim into opening it, trigger an out-of-bounds read error and execute arbitrary code on the system.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 60.0 - 90.0.2

Firefox ESR: 78.0 - 78.13.0, 68.0 - 68.12.0, 60.0 - 60.9.0


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/
http://www.mozilla.org/en-US/security/advisories/mfsa2021-34/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

4) Resource management error

EUVDB-ID: #VU55681

Risk: Medium

CVSSv3.1:

CVE-ID: CVE-2021-29983

CWE-ID: CWE-399 - Resource Management Errors

Exploit availability: No

Description

The vulnerability allows a remote attacker to perform clickjacking attack.

The vulnerability exists due to improper management of internal resources within the application. Firefox for Android can get stuck in fullscreen mode and not exit it even after normal interactions that should cause it to exit. A remote attacker can abuse this to trick the victim into revealing sensitive information.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Firefox for Android: 80.1.2 - 90.1.3


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

5) Buffer overflow

EUVDB-ID: #VU55682

Risk: High

CVSSv3.1:

CVE-ID: CVE-2021-29984

CWE-ID: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

Exploit availability: No

Description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a boundary error when performing JIT optimization. A remote attacker can trigger memory corruption and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 60.0 - 90.0.2

Firefox ESR: 78.0 - 78.12.0, 68.0 - 68.12.0, 60.0 - 60.9.0


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/
http://www.mozilla.org/en-US/security/advisories/mfsa2021-34/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

6) Memory corruption

EUVDB-ID: #VU55683

Risk: High

CVSSv3.1:

CVE-ID: CVE-2021-29980

CWE-ID: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

Exploit availability: No

Description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a boundary error in a canvas object. A remote attacker can trigger memory corruption and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 60.0 - 90.0.2

Firefox ESR: 78.0 - 78.12.0, 68.0 - 68.12.0, 60.0 - 60.9.0


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/
http://www.mozilla.org/en-US/security/advisories/mfsa2021-34/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

7) Use-after-free

EUVDB-ID: #VU55684

Risk: High

CVSSv3.1:

CVE-ID: CVE-2021-29985

CWE-ID: CWE-416 - Use After Free

Exploit availability: Yes

Description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a use-after-free error in media channels within the MediaCacheStream::NotifyDataReceived method. A remote attacker can trick the victim to open a specially crafted web page, trigger a use-after-free error and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 60.0 - 90.0.2

Firefox ESR: 78.0 - 78.12.0, 68.0 - 68.12.0, 60.0 - 60.9.0


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/
http://www.mozilla.org/en-US/security/advisories/mfsa2021-34/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

8) Buffer overflow

EUVDB-ID: #VU55685

Risk: High

CVSSv3.1:

CVE-ID: CVE-2021-29989

CWE-ID: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

Exploit availability: No

Description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a boundary error when processing HTML content. A remote attacker can trigger memory corruption and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 60.0 - 90.0.2

Firefox ESR: 78.0 - 78.12.0, 68.0 - 68.12.0, 60.0 - 60.9.0


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/
http://www.mozilla.org/en-US/security/advisories/mfsa2021-34/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

9) Insufficient UI Warning of Dangerous Operations

EUVDB-ID: #VU55686

Risk: Low

CVSSv3.1:

CVE-ID: CVE-2021-29987

CWE-ID: CWE-357 - Insufficient UI Warning of Dangerous Operations

Exploit availability: No

Description

The vulnerability allows a remote attacker to bypass implemented security restrictions.

The vulnerability exists due to the way Firefox displays permission panels. After requesting multiple permissions, and closing the first permission panel, subsequent permission panels will be displayed in a different position but still record a click in the default location, making it possible to trick a user into accepting a permission they did not want to.

Note, the vulnerability affects Linux installations only.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 80.0 - 90.0.2


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

10) Type Confusion

EUVDB-ID: #VU55687

Risk: Low

CVSSv3.1:

CVE-ID: CVE-2021-29982

CWE-ID: CWE-843 - Access of Resource Using Incompatible Type ('Type Confusion')

Exploit availability: No

Description

The vulnerability allows a remote attacker to gain access to sensitive information.

The vulnerability exists due to incorrect JIT optimization and a type confusion error. A remote attacker can trick the victim to open a specially crafted web page and read a single bit of memory.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 80.0 - 90.0.2


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?

11) Buffer overflow

EUVDB-ID: #VU55688

Risk: High

CVSSv3.1:

CVE-ID: CVE-2021-29990

CWE-ID: CWE-119 - Improper Restriction of Operations within the Bounds of a Memory Buffer

Exploit availability: No

Description

The vulnerability allows a remote attacker to execute arbitrary code on the target system.

The vulnerability exists due to a boundary error when processing HTML content. A remote attacker can create a specially crafted website, trick the victim into opening it, trigger memory corruption and execute arbitrary code on the target system.

Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.

Mitigation

Install updates from vendor's website.

Vulnerable software versions

Mozilla Firefox: 80.0 - 90.0.2


CPE2.3 External links

http://www.mozilla.org/en-US/security/advisories/mfsa2021-33/

Q & A

Can this vulnerability be exploited remotely?

How the attacker can exploit this vulnerability?

Is there known malware, which exploits this vulnerability?



###SIDEBAR###