#VU50880 Reachable Assertion in Mozilla Firefox - CVE-2021-23970
Published: February 23, 2021
Mozilla Firefox
Mozilla
Description
The vulnerability allows a remote attacker to bypass implemented security restrictions.
The vulnerability exists due to a reachable assertion in multithreaded wasm code, when validating separation of script domains. A remote attacker can create a specially crafted web page, trick the victim into visiting it, trigger an assertion failure and bypass implemented security restrictions.