PT-2021-15639 · Mozilla+4 · Firefox+4

Irvan Kurniawan

·

Published

2021-03-23

·

Updated

2024-12-12

·

CVE-2021-23983

CVSS v3.1

6.5

Medium

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: Firefox versions prior to 87
Description: The issue arises when a transition is caused on a parent node by removing a CSS rule, leading to an invalid property being applied for a marker. This results in memory corruption and can cause a potentially exploitable crash.
Recommendations: For versions prior to 87, update to version 87 or later to resolve the issue.

Exploit

Fix

Memory Corruption

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2021-1543
ALT-PU-2021-2725
ALT-PU-2021-2881
ALT-PU-2021-3368
ALT-PU-2021-3369
ALT-PU-2022-1781
ALT-PU-2022-1782
CVE-2021-23983
OESA-2023-1673
OESA-2023-1674
OPENSUSE-SU-2024:10600-1
OPENSUSE-SU-2024:14572-1
USN-4893-1

Affected Products

Alt Linux
Astra Linux
Firefox
Linuxmint
Ubuntu