CVE-2020-35111 log
Source |
|
Severity | Low |
Remote | Yes |
Type | Information disclosure |
Description | A security issue was discovered in Firefox before 84.0 and Thunderbird before 78.6. When an extension with the proxy permission registered to receive <all_urls>, the proxy.onRequest callback was not triggered for view-source URLs. While web content cannot navigate to such URLs, a user opening View Source could have inadvertently leaked their IP address. |
Group | Package | Affected | Fixed | Severity | Status | Ticket |
---|---|---|---|---|---|---|
AVG-1362 | firefox | 83.0-2 | 84.0-1 | High | Fixed | |
AVG-1315 | thunderbird | 78.5.0-1 | 78.6.0-1 | High | Fixed | FS#68853 |
Date | Advisory | Group | Package | Severity | Type |
---|---|---|---|---|---|
16 Dec 2020 | ASA-202012-25 | AVG-1362 | firefox | High | multiple issues |
16 Dec 2020 | ASA-202012-23 | AVG-1315 | thunderbird | High | multiple issues |