Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-q7vj-643r-959g

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1 on Android relies on Android's weak approach to seeding the Math.random function, which makes it easier for attackers to bypass a profile-randomization protection mechanism via a crafted application.

The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1 on Android relies on Android's weak approach to seeding the Math.random function, which makes it easier for attackers to bypass a profile-randomization protection mechanism via a crafted application.

EPSS

Процентиль: 36%
0.00151
Низкий

Связанные уязвимости

nvd
почти 12 лет назад

The saltProfileName function in base/GeckoProfileDirectories.java in Mozilla Firefox through 28.0.1 on Android relies on Android's weak approach to seeding the Math.random function, which makes it easier for attackers to bypass a profile-randomization protection mechanism via a crafted application.

debian
почти 12 лет назад

The saltProfileName function in base/GeckoProfileDirectories.java in M ...

EPSS

Процентиль: 36%
0.00151
Низкий