Описание
Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, and Thunderbird 140.10.1.
Ссылки
- Permissions Required
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 140.10.1 (исключая)Версия до 150.0 (исключая)Версия до 140.10.1 (исключая)Версия до 150.0 (исключая)
Одно из
cpe:2.3:a:mozilla:firefox:*:*:*:*:esr:*:*:*
cpe:2.3:a:mozilla:firefox:*:*:*:*:-:*:*:*
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:esr:*:*:*
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:-:*:*:*
EPSS
Процентиль: 18%
0.00258
Низкий
9.6 Critical
CVSS3
Дефекты
CWE-120
Связанные уязвимости
CVSS3: 9.6
ubuntu
5 месяцев назад
Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, and Thunderbird 140.10.1.
CVSS3: 6.1
redhat
5 месяцев назад
Sandbox escape due to incorrect boundary conditions in the WebRTC: Networking component. This vulnerability was fixed in Firefox 150, Thunderbird 150, Firefox ESR 140.10.1, and Thunderbird 140.10.1.
CVSS3: 9.6
debian
5 месяцев назад
Sandbox escape due to incorrect boundary conditions in the WebRTC: Net ...
EPSS
Процентиль: 18%
0.00258
Низкий
9.6 Critical
CVSS3
Дефекты
CWE-120