Логотип exploitDog
bind:CVE-2019-9802
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-9802

Количество 5

Количество 5

ubuntu логотип

CVE-2019-9802

почти 7 лет назад

If a Sandbox content process is compromised, it can initiate an FTP download which will then use a child process to render the downloaded data. The downloaded data can then be passed to the Chrome process with an arbitrary file length supplied by an attacker, bypassing sandbox protections and allow for a potential memory read of adjacent data from the privileged Chrome process, which may include sensitive data. This vulnerability affects Firefox < 66.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-9802

почти 7 лет назад

If a Sandbox content process is compromised, it can initiate an FTP download which will then use a child process to render the downloaded data. The downloaded data can then be passed to the Chrome process with an arbitrary file length supplied by an attacker, bypassing sandbox protections and allow for a potential memory read of adjacent data from the privileged Chrome process, which may include sensitive data. This vulnerability affects Firefox < 66.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2019-9802

почти 7 лет назад

If a Sandbox content process is compromised, it can initiate an FTP do ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-r3xx-53c7-m93v

больше 3 лет назад

If a Sandbox content process is compromised, it can initiate an FTP download which will then use a child process to render the downloaded data. The downloaded data can then be passed to the Chrome process with an arbitrary file length supplied by an attacker, bypassing sandbox protections and allow for a potential memory read of adjacent data from the privileged Chrome process, which may include sensitive data. This vulnerability affects Firefox < 66.

EPSS: Низкий
fstec логотип

BDU:2020-00593

почти 7 лет назад

Уязвимость браузера Firefox, связанная с отсутствием защиты служебных данных, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-9802

If a Sandbox content process is compromised, it can initiate an FTP download which will then use a child process to render the downloaded data. The downloaded data can then be passed to the Chrome process with an arbitrary file length supplied by an attacker, bypassing sandbox protections and allow for a potential memory read of adjacent data from the privileged Chrome process, which may include sensitive data. This vulnerability affects Firefox < 66.

CVSS3: 7.5
0%
Низкий
почти 7 лет назад
nvd логотип
CVE-2019-9802

If a Sandbox content process is compromised, it can initiate an FTP download which will then use a child process to render the downloaded data. The downloaded data can then be passed to the Chrome process with an arbitrary file length supplied by an attacker, bypassing sandbox protections and allow for a potential memory read of adjacent data from the privileged Chrome process, which may include sensitive data. This vulnerability affects Firefox < 66.

CVSS3: 7.5
0%
Низкий
почти 7 лет назад
debian логотип
CVE-2019-9802

If a Sandbox content process is compromised, it can initiate an FTP do ...

CVSS3: 7.5
0%
Низкий
почти 7 лет назад
github логотип
GHSA-r3xx-53c7-m93v

If a Sandbox content process is compromised, it can initiate an FTP download which will then use a child process to render the downloaded data. The downloaded data can then be passed to the Chrome process with an arbitrary file length supplied by an attacker, bypassing sandbox protections and allow for a potential memory read of adjacent data from the privileged Chrome process, which may include sensitive data. This vulnerability affects Firefox < 66.

0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2020-00593

Уязвимость браузера Firefox, связанная с отсутствием защиты служебных данных, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 7.5
0%
Низкий
почти 7 лет назад

Уязвимостей на страницу