RHSA-2021:5014HighCVSS 9.8

Red Hat Security Advisory: firefox security update

Published
December 8, 2021
Last Modified
June 25, 2026

🔗 CVE IDs covered (10)

📋 Description

CVE-2021-4129 — Mozilla: Memory safety bugs fixed in Firefox 95 and Firefox ESR 91.4 CVE-2021-43536 — Mozilla: URL leakage when navigating while executing asynchronous function CVE-2021-43537 — Mozilla: Heap buffer overflow when using structured clone CVE-2021-43538 — Mozilla: Missing fullscreen and pointer lock notification when requesting both CVE-2021-43539 — Mozilla: GC rooting failure when calling wasm instance methods CVE-2021-43541 — Mozilla: External protocol handler parameters were unescaped CVE-2021-43542 — Mozilla: XMLHttpRequest error codes could have leaked the existence of an external protocol handler CVE-2021-43543 — Mozilla: Bypass of CSP sandbox directive when embedding CVE-2021-43545 — Mozilla: Denial of Service when using the Location API in a loop CVE-2021-43546 — Mozilla: Cursor spoofing could overlay user interface when native cursor is zoomed

🔗 References (13)