Security Advisory

CVE-2021-23981

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-03-31 13:42:17
Last updated 2024-08-03 19:14:09
Assigner mozilla
State PUBLISHED

Description

A texture upload of a Pixel Buffer Object could have confused the WebGL code to skip binding the buffer used to unpack it, resulting in memory corruption and a potentially exploitable information leak or crash. This vulnerability affects Firefox ESR < 78.9, Firefox < 87, and Thunderbird < 78.9.