Vulnerability Description
Possible system denial of service in case of arbitrary changing Firefox browser parameters. An attacker could change specific Firefox browser parameters file in a certain way and then reboot the system to make the system unbootable.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Kaspersky | Endpoint Security | >= 11.1.0, <= 11.6.0 |
| Microsoft | Windows | - |
References
- https://support.kaspersky.com/general/vulnerability.aspx?el=12430#01112021Broken Link
- https://www.zerodayinitiative.com/advisories/ZDI-21-1280/Third Party AdvisoryVDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-22-431/Third Party AdvisoryVDB Entry
- https://support.kaspersky.com/general/vulnerability.aspx?el=12430#01112021Broken Link
- https://www.zerodayinitiative.com/advisories/ZDI-21-1280/Third Party AdvisoryVDB Entry
- https://www.zerodayinitiative.com/advisories/ZDI-22-431/Third Party AdvisoryVDB Entry
FAQ
What is CVE-2021-35053?
CVE-2021-35053 is a vulnerability with a CVSS score of 7.5 (HIGH). Possible system denial of service in case of arbitrary changing Firefox browser parameters. An attacker could change specific Firefox browser parameters file in a certain way and then reboot the syste...
How severe is CVE-2021-35053?
CVE-2021-35053 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-35053?
Check the references section above for vendor advisories and patch information. Affected products include: Kaspersky Endpoint Security, Microsoft Windows.