Description:
Mozilla has published the advisories (MFSA2021-33 and MFSA2021-34) to address multiple vulnerabilities in Firefox browser. A remote attacker could entice a user running a vulnerable browser to visit a web page with specially crafted content to exploit the vulnerabilities.
 
Affected Systems:
- Firefox ESR Windows versions prior to version 78.13
 
- Firefox Windows versions prior to version 91
 
 
Impact:
Successful exploitation of the vulnerabilities could lead to arbitrary code execution or application crash on an affected system.
 
Recommendation:
Mozilla has released new versions of the product to address the issues and they can be downloaded at the following URLs:
- Firefox 91 for Windows
 https://www.mozilla.org/en-US/firefox/all/#product-desktop-release 
- Firefox ESR 78.13 for Windows
 https://www.mozilla.org/en-US/firefox/all/#product-desktop-esr 
Users of affected systems should follow the recommendations provided by the product vendor and take immediate actions to mitigate the risk..
 
More Information:
- https://www.mozilla.org/en-US/security/advisories/mfsa2021-33/
 
- https://www.mozilla.org/en-US/security/advisories/mfsa2021-34/
 
- https://www.hkcert.org/security-bulletin/mozilla-products-multiple-vulnerabilities_20210811
 
- https://us-cert.cisa.gov/ncas/current-activity/2021/08/10/mozilla-releases-security-updates-firefox
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-29980 (to CVE-2021-29982)
 
- https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-29984 (to CVE-2021-29990)