Vulnerabilities > Mozilla > Firefox > 90.0.1

DATE CVE VULNERABILITY TITLE RISK
2021-11-03 CVE-2021-38498 Use After Free vulnerability in Mozilla Firefox
During process shutdown, a document could have caused a use-after-free of a languages service object, leading to memory corruption and a potentially exploitable crash.
network
low complexity
mozilla CWE-416
5.0
2021-11-03 CVE-2021-38499 Out-of-bounds Write vulnerability in Mozilla Firefox
Mozilla developers reported memory safety bugs present in Firefox 92.
network
mozilla CWE-787
6.8
2021-11-03 CVE-2021-38500 Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1.
network
mozilla debian
6.8
2021-11-03 CVE-2021-38501 Unspecified vulnerability in Mozilla Firefox
Mozilla developers reported memory safety bugs present in Firefox 92 and Firefox ESR 91.1.
network
mozilla
6.8
2021-08-17 CVE-2021-29980 Missing Initialization of Resource vulnerability in Mozilla Thunderbird
Uninitialized memory in a canvas object could have caused an incorrect free() leading to memory corruption and a potentially exploitable crash.
network
low complexity
mozilla CWE-909
8.8
2021-08-17 CVE-2021-29981 Unspecified vulnerability in Mozilla Firefox
An issue present in lowering/register allocation could have led to obscure but deterministic register confusion failures in JITted code that would lead to a potentially exploitable crash.
network
mozilla
6.8
2021-08-17 CVE-2021-29982 Missing Release of Resource after Effective Lifetime vulnerability in Mozilla Firefox
Due to incorrect JIT optimization, we incorrectly interpreted data from the wrong type of object, resulting in the potential leak of a single bit of memory.
network
mozilla CWE-772
4.3
2021-08-17 CVE-2021-29983 Unspecified vulnerability in Mozilla Firefox
Firefox for Android could get stuck in fullscreen mode and not exit it even after normal interactions that should cause it to exit.
network
mozilla
4.3
2021-08-17 CVE-2021-29984 Out-of-bounds Write vulnerability in Mozilla Thunderbird
Instruction reordering resulted in a sequence of instructions that would cause an object to be incorrectly considered during garbage collection.
network
low complexity
mozilla CWE-787
8.8
2021-08-17 CVE-2021-29985 Use After Free vulnerability in Mozilla Thunderbird
A use-after-free vulnerability in media channels could have led to memory corruption and a potentially exploitable crash.
network
low complexity
mozilla CWE-416
8.8