#VU53706 Out-of-bounds read in Mozilla Firefox and Firefox ESR - CVE-2021-29964
Published: June 1, 2021
Mozilla Firefox
Firefox ESR
Mozilla
Description
The vulnerability allows a local application to gain access to potentially sensitive information.
The vulnerability exists due to a boundary condition. A locally-installed hostile program could send WM_COPYDATA messages that Firefox would processing incorrectly and will result in out-of-bounds read.
Note, the vulnerability affects Windows installations only.