CVE-2021-29955

Source
https://cve.org/CVERecord?id=CVE-2021-29955
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-29955.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-29955
Downstream
Withdrawn
2026-01-27T04:17:39.524234Z
Published
2021-06-24T14:15:10Z
Modified
2026-01-27T04:17:39.524234Z
Severity
  • 5.3 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:N/A:N CVSS Calculator
Summary
[none]
Details

A transient execution vulnerability, named Floating Point Value Injection (FPVI) allowed an attacker to leak arbitrary memory addresses and may have also enabled JIT type confusion attacks. (A related vulnerability, Speculative Code Store Bypass (SCSB), did not affect Firefox.). This vulnerability affects Firefox ESR < 78.9 and Firefox < 87.

References

Affected packages