Vulnerabilities > CVE-2021-23981 - Out-of-bounds Write vulnerability in Mozilla Firefox

047910
CVSS 8.1 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
mozilla
CWE-787

Summary

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.

Vulnerable Configurations

Part Description Count
Application
Mozilla
1292

Common Weakness Enumeration (CWE)