[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248268

 
 

909

 
 

195051

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Firefox - (bulletinjul2019)

ID: oval:org.secpod.oval:def:2105024Date: (C)2019-12-30   (M)2023-12-20
Class: PATCHFamily: unix




Insufficient vetting of parameters passed with the Prompt:Open IPC message between child and parent processes can result in the non-sandboxed parent process opening web content chosen by a compromised child process. When combined with additional vulnerabilities this could result in executing arbitrary code on the user"s computer. This vulnerability affects Firefox ESR < 60.7.2, Firefox < 67.0.4, and Thunderbird < 60.7.2.

Platform:
Sun Solaris 11
Product:
web/data/firefox-bookmarks
web/browser/firefox
mail/thunderbird
mail/thunderbird/plugin/thunderbird-lightning
Reference:
bulletinjul2019
CVE-2019-11708
CVE    1
CVE-2019-11708
CPE    1
cpe:/o:oracle:solaris:11

© SecPod Technologies