QID 375836

Date Published: 2021-09-09

QID 375836: Mozilla Firefox ESR Multiple Vulnerabilities (MFSA2021-40)

Firefox is a free and open-source web browser developed for Windows, OS X, and Linux, with a mobile version for Android.

Affected Products:
Prior to Firefox ESR 91.1

QID Detection Logic (Authenticated) :
This checks for vulnerable version of Firefox browser.

Successful exploitation of this vulnerability may allow an attacker to corrupt memory leading to a potentially exploitable crash.

  • CVSS V3 rated as High - 6.3 severity.
  • CVSS V2 rated as High - 7.5 severity.
  • Solution
    Vendor has released fix to address these vulnerabilities. Refer to MFSA2021-40

    CVEs related to QID 375836

    Software Advisories
    Advisory ID Software Component Link
    MFSA2021-40 URL Logo www.mozilla.org/en-US/security/advisories/mfsa2021-40/