CVE-2020-15670
CVE-2020-15670
Vexday Risk Score
3Bajo
Decisión SSVC (CISA)
Track
Sin señal de explotación → monitorear
CVSS —EPSS 1.1%KEV nãoPoC —Nuclei —Metasploit —Patch —
Ciclo de vida
01 oct 2020Publicada en NVD
Recomendación: Monitorear — sin señal de explotación por ahora.
Mozilla developers reported memory safety bugs present in Firefox for Android 79. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 80, Firefox ESR < 78.2, Thunderbird < 78.2, and Firefox for Android < 80.
Productos afectados
Mozilla · FirefoxMozilla · Firefox ESRMozilla · Firefox for AndroidMozilla · Thunderbird¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1651001%2C1653626%2C1656957https://www.mozilla.org/security/advisories/mfsa2020-36/https://www.mozilla.org/security/advisories/mfsa2020-38/https://www.mozilla.org/security/advisories/mfsa2020-39/https://www.mozilla.org/security/advisories/mfsa2020-41/