Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-5282

Опубликовано: 22 сент. 2016
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3
CVSS3: 6.5

Описание

Mozilla Firefox before 49.0 does not properly restrict the scheme in favicon requests, which might allow remote attackers to obtain sensitive information via unspecified vectors, as demonstrated by a jar: URL for a favicon resource.

РелизСтатусПримечание
devel

released

49.0+build4-0ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [49.0+build4-0ubuntu0.14.04.1]]
precise

released

49.0+build4-0ubuntu0.12.04.1
trusty

released

49.0+build4-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [49.0+build4-0ubuntu0.14.04.1]
upstream

released

49.0
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

released

49.0+build4-0ubuntu0.16.04.1
yakkety

released

49.0+build4-0ubuntu2

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
precise

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

not-affected

yakkety

not-affected

Показывать по

4.3 Medium

CVSS2

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.6
redhat
почти 10 лет назад

Mozilla Firefox before 49.0 does not properly restrict the scheme in favicon requests, which might allow remote attackers to obtain sensitive information via unspecified vectors, as demonstrated by a jar: URL for a favicon resource.

CVSS3: 6.5
nvd
почти 10 лет назад

Mozilla Firefox before 49.0 does not properly restrict the scheme in favicon requests, which might allow remote attackers to obtain sensitive information via unspecified vectors, as demonstrated by a jar: URL for a favicon resource.

CVSS3: 6.5
debian
почти 10 лет назад

Mozilla Firefox before 49.0 does not properly restrict the scheme in f ...

CVSS3: 6.5
github
больше 4 лет назад

Mozilla Firefox before 49.0 does not properly restrict the scheme in favicon requests, which might allow remote attackers to obtain sensitive information via unspecified vectors, as demonstrated by a jar: URL for a favicon resource.

suse-cvrf
почти 10 лет назад

Security update for MozillaFirefox, mozilla-nss

4.3 Medium

CVSS2

6.5 Medium

CVSS3