CVE-2021-38493
Summary
| CVE | CVE-2021-38493 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-11-03 01:15:00 UTC |
| Updated | 2022-12-09 19:26:00 UTC |
| Description | Mozilla developers reported memory safety bugs present in Firefox 91 and Firefox ESR 78.13. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 78.14, Thunderbird < 78.14, and Firefox < 92. |
NVD Known Affected Configurations (CPE 2.3)
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 159385 Oracle Enterprise Linux Security Update for thunderbird (ELSA-2021-3494)
- 159386 Oracle Enterprise Linux Security Update for firefox (ELSA-2021-3497)
- 159387 Oracle Enterprise Linux Security Update for firefox (ELSA-2021-3497)
- 159388 Oracle Enterprise Linux Security Update for firefox (ELSA-2021-3498)
- 159389 Oracle Enterprise Linux Security Update for thunderbird (ELSA-2021-3499)
- 178787 Debian Security Update for thunderbird (DSA 4973-1)
- 178788 Debian Security Update for firefox-esr (DSA 4969-1)
- 178792 Debian Security Update for thunderbird (DLA 2757-1)
- 178794 Debian Security Update for firefox-esr (DLA 2756-1)
- 183013 Debian Security Update for firefox-esrthunderbird (CVE-2021-38493)
- 198486 Ubuntu Security Notification for Firefox Vulnerabilities (USN-5074-1)
- 198634 Ubuntu Security Notification for Thunderbird Vulnerabilities (USN-5146-1)
- 239624 Red Hat Update for firefox (RHSA-2021:3501)
- 239625 Red Hat Update for thunderbird (RHSA-2021:3500)
- 239626 Red Hat Update for thunderbird (RHSA-2021:3499)
- 239627 Red Hat Update for firefox (RHSA-2021:3498)
- 239628 Red Hat Update for firefox (RHSA-2021:3497)
- 239629 Red Hat Update for firefox (RHSA-2021:3496)
- 239630 Red Hat Update for thunderbird (RHSA-2021:3495)
- 239631 Red Hat Update for thunderbird (RHSA-2021:3494)
- 257113 CentOS Security Update for firefox (CESA-2021:3498)
- 257114 CentOS Security Update for thunderbird (CESA-2021:3494)
- 352868 Amazon Linux Security Advisory for thunderbird: ALAS2-2021-1720
- 375833 Mozilla Firefox Multiple Vulnerabilities (MFSA2021-38)
- 375834 Mozilla Firefox ESR Multiple Vulnerabilities (MFSA2021-39)
- 375838 Mozilla Thunderbird Multiple Vulnerabilities (MFSA2021-42)
- 501552 Alpine Linux Security Update for firefox-esr
- 501618 Alpine Linux Security Update for mozjs78
- 502069 Alpine Linux Security Update for firefox-esr
- 502080 Alpine Linux Security Update for firefox
- 502381 Alpine Linux Security Update for thunderbird
- 503632 Alpine Linux Security Update for thunderbird
- 503634 Alpine Linux Security Update for thunderbird
- 503650 Alpine Linux Security Update for thunderbird
- 503669 Alpine Linux Security Update for thunderbird
- 503851 Alpine Linux Security Update for firefox
- 504812 Alpine Linux Security Update for firefox-esr
- 506260 Alpine Linux Security Update for thunderbird
- 710574 Gentoo Linux Mozilla Firefox Multiple Vulnerabilities (GLSA 202202-03)
- 710585 Gentoo Linux Mozilla Thunderbird Multiple Vulnerabilities (GLSA 202208-14)
- 751542 OpenSUSE Security Update for MozillaThunderbird (openSUSE-SU-2021:4150-1)
- 751566 OpenSUSE Security Update for MozillaThunderbird (openSUSE-SU-2021:1635-1)
- 940045 AlmaLinux Security Update for thunderbird (ALSA-2021:3499)
- 940113 AlmaLinux Security Update for firefox (ALSA-2021:3497)
- 960058 Rocky Linux Security Update for thunderbird (RLSA-2021:3499)
- 960083 Rocky Linux Security Update for firefox (RLSA-2021:3497)