CVE-2020-15654 - log back

CVE-2020-15654 edited at 01 Sep 2020 20:37:09
Severity
- Unknown
+ Low
Remote
- Unknown
+ Remote
Type
- Unknown
+ Denial of service
Description
+ When in an endless loop, a website specifying a custom cursor using CSS could make it look like the user is interacting with the user interface, when they are not. This could lead to a perceived broken state, especially when interactions with existing browser dialogs and warnings do not work. This vulnerability affects Firefox ESR < 78.1, Firefox < 79, and Thunderbird < 78.1.
References
+ https://www.mozilla.org/en-US/security/advisories/mfsa2020-33/#CVE-2020-15654
Notes
CVE-2020-15654 created at 31 Jul 2020 15:14:59