Описание
Firefox sometimes ran the onload handler for SVG elements that the DOM sanitizer decided to remove, resulting in JavaScript being executed after pasting attacker-controlled data into a contenteditable element. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 81.0+build2-0ubuntu0.18.04.1 |
devel | released | 81.0+build2-0ubuntu1 |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | released | 81.0+build2-0ubuntu0.20.04.1 |
groovy | released | 81.0+build2-0ubuntu1 |
hirsute | released | 81.0+build2-0ubuntu1 |
impish | released | 81.0+build2-0ubuntu1 |
jammy | released | 81.0+build2-0ubuntu1 |
kinetic | released | 81.0+build2-0ubuntu1 |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support, was needs-triage |
devel | DNE | |
esm-apps/bionic | ignored | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
groovy | DNE | |
hirsute | DNE | |
impish | DNE | |
jammy | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | ignored | end of standard support, was needs-triage |
devel | DNE | |
esm-apps/focal | ignored | |
esm-infra-legacy/trusty | DNE | |
esm-infra/bionic | ignored | |
focal | ignored | |
groovy | ignored | end of life |
hirsute | DNE | |
impish | DNE | |
jammy | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | DNE | |
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | DNE | |
groovy | DNE | |
hirsute | DNE | |
impish | DNE | |
jammy | DNE | |
kinetic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | DNE | |
devel | DNE | |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | ignored | |
focal | ignored | |
groovy | ignored | end of life |
hirsute | DNE | |
impish | DNE | |
jammy | DNE | |
kinetic | DNE |
Показывать по
Релиз | Статус | Примечание |
---|---|---|
bionic | released | 1:78.8.1+build1-0ubuntu0.18.04.1 |
devel | not-affected | 1:78.4.3+build1-0ubuntu1 |
esm-infra-legacy/trusty | DNE | |
esm-infra/focal | DNE | |
focal | released | 1:78.7.1+build1-0ubuntu0.20.04.1 |
groovy | not-affected | 1:78.3.2+build1-0ubuntu1 |
hirsute | not-affected | 1:78.4.3+build1-0ubuntu1 |
impish | not-affected | 1:78.4.3+build1-0ubuntu1 |
jammy | not-affected | 1:78.4.3+build1-0ubuntu1 |
kinetic | not-affected | 1:78.4.3+build1-0ubuntu1 |
Показывать по
Ссылки на источники
4.3 Medium
CVSS2
6.1 Medium
CVSS3
Связанные уязвимости
Firefox sometimes ran the onload handler for SVG elements that the DOM sanitizer decided to remove, resulting in JavaScript being executed after pasting attacker-controlled data into a contenteditable element. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.
Firefox sometimes ran the onload handler for SVG elements that the DOM sanitizer decided to remove, resulting in JavaScript being executed after pasting attacker-controlled data into a contenteditable element. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.
Firefox sometimes ran the onload handler for SVG elements that the DOM ...
Firefox sometimes ran the onload handler for SVG elements that the DOM sanitizer decided to remove, resulting in JavaScript being executed after pasting attacker-controlled data into a contenteditable element. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.
4.3 Medium
CVSS2
6.1 Medium
CVSS3