Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-2714

Опубликовано: 14 мая 2015
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 2.1

Описание

Mozilla Firefox before 38.0 on Android does not properly restrict writing URL data to the Android logging system, which allows attackers to obtain sensitive information via a crafted application that has a required permission for reading a log, as demonstrated by the READ_LOGS permission for the mixed-content violation log on Android 4.0 and earlier.

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
precise

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

released

38.0
utopic

not-affected

vivid

not-affected

Показывать по

EPSS

Процентиль: 28%
0.00101
Низкий

2.1 Low

CVSS2

Связанные уязвимости

nvd
больше 10 лет назад

Mozilla Firefox before 38.0 on Android does not properly restrict writing URL data to the Android logging system, which allows attackers to obtain sensitive information via a crafted application that has a required permission for reading a log, as demonstrated by the READ_LOGS permission for the mixed-content violation log on Android 4.0 and earlier.

debian
больше 10 лет назад

Mozilla Firefox before 38.0 on Android does not properly restrict writ ...

github
больше 3 лет назад

Mozilla Firefox before 38.0 on Android does not properly restrict writing URL data to the Android logging system, which allows attackers to obtain sensitive information via a crafted application that has a required permission for reading a log, as demonstrated by the READ_LOGS permission for the mixed-content violation log on Android 4.0 and earlier.

EPSS

Процентиль: 28%
0.00101
Низкий

2.1 Low

CVSS2