Описание
Mozilla Firefox before 44.0 stores cookies with names containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-7208.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | released | 44.0+build3-0ubuntu1 |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was released [44.0+build3-0ubuntu0.14.04.1]] |
| precise | released | 44.0+build3-0ubuntu0.12.04.1 |
| trusty | released | 44.0+build3-0ubuntu0.14.04.1 |
| trusty/esm | DNE | trusty was released [44.0+build3-0ubuntu0.14.04.1] |
| upstream | released | 44.0 |
| vivid | released | 44.0+build3-0ubuntu0.15.04.1 |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE | |
| wily | released | 44.0+build3-0ubuntu0.15.10.1 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | |
| esm-infra-legacy/trusty | DNE | trusty/esm was DNE [trusty was not-affected] |
| precise | not-affected | |
| trusty | not-affected | |
| trusty/esm | DNE | trusty was not-affected |
| upstream | not-affected | |
| vivid | ignored | end of life |
| vivid/stable-phone-overlay | DNE | |
| vivid/ubuntu-core | DNE | |
| wily | not-affected |
Показывать по
5 Medium
CVSS2
5.3 Medium
CVSS3
Связанные уязвимости
Mozilla Firefox before 44.0 stores cookies with names containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-7208.
Mozilla Firefox before 44.0 stores cookies with names containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-7208.
Mozilla Firefox before 44.0 stores cookies with names containing verti ...
Mozilla Firefox before 44.0 stores cookies with names containing vertical tab characters, which allows remote attackers to obtain sensitive information by reading HTTP Cookie headers. NOTE: this vulnerability exists because of an incomplete fix for CVE-2015-7208.
Security update for the MozillaFirefox, mozilla-nss and mozilla-nspr
5 Medium
CVSS2
5.3 Medium
CVSS3