漏洞信息详情

Mozilla Firefox ESR和Mozilla Firefox 权限许可和访问控制问题漏洞

漏洞简介

Mozilla Firefox和Mozilla Firefox ESR都是美国Mozilla基金会的产品。Mozilla Firefox是一款开源Web浏览器。Mozilla Firefox ESR是Firefox(Web浏览器)的一个延长支持版本。

Mozilla Firefox ESR 60.3之前版本和Firefox 63之前版本中存在安全漏洞。远程攻击者可利用该漏洞以提升的权限执行任意代码。

漏洞公告

目前厂商已发布升级补丁以修复漏洞,补丁获取链接:

https://www.mozilla.org/en-US/security/advisories/mfsa2018-26/

https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/

参考网址

来源:BID

链接:http://www.securityfocus.com/bid/105718

来源:UBUNTU

链接:https://usn.ubuntu.com/3801-1/

来源:www.mozilla.org

链接:https://www.mozilla.org/en-US/security/advisories/mfsa2018-27/

来源:www.mozilla.org

链接:https://www.mozilla.org/en-US/security/advisories/mfsa2018-26/

来源:access.redhat.com

链接:https://access.redhat.com/errata/RHSA-2018:3006

来源:access.redhat.com

链接:https://access.redhat.com/errata/RHSA-2018:3005

来源:access.redhat.com

链接:https://access.redhat.com/security/cve/cve-2018-12391

来源:www.mozilla.org

链接:https://www.mozilla.org/en-US/security/advisories/mfsa2018-28/

来源:www.mozilla.com

链接:http://www.mozilla.com/en-US/

来源:access.redhat.com

链接:https://access.redhat.com/security/cve/cve-2018-12397

来源:access.redhat.com

链接:https://access.redhat.com/security/cve/cve-2018-12396

来源:access.redhat.com

链接:https://access.redhat.com/security/cve/cve-2018-12395

来源:access.redhat.com

链接:https://access.redhat.com/security/cve/cve-2018-12393

来源:access.redhat.com

链接:https://access.redhat.com/security/cve/cve-2018-12392

来源:access.redhat.com

链接:https://access.redhat.com/security/cve/cve-2018-12390

来源:bugzilla.redhat.com

链接:https://bugzilla.redhat.com/show_bug.cgi?id=1642181

来源:MLIST

链接:https://lists.debian.org/debian-lts-announce/2018/11/msg00008.html

来源:CONFIRM

链接:https://www.mozilla.org/security/advisories/mfsa2018-26/

来源:www.mozilla.org

链接:https://www.mozilla.org/security/advisories/mfsa2018-27/

来源:bugzilla.mozilla.org

链接:https://bugzilla.mozilla.org/show_bug.cgi?id=1483602

来源:GENTOO

链接:https://security.gentoo.org/glsa/201811-04

来源:SECTRACK

链接:http://www.securitytracker.com/id/1041944

来源:DEBIAN

链接:https://www.debian.org/security/2018/dsa-4324

来源:nvd.nist.gov

链接:https://nvd.nist.gov/vuln/detail/CVE-2018-12396

来源:www-01.ibm.com

链接:https://www-01.ibm.com/support/docview.wss?uid=ibm10871292

来源:www.securityfocus.com

链接:https://www.securityfocus.com/bid/105718

受影响实体

    暂无


漏洞信息快速查询

相关漏洞

更多