Mozilla Firefox information leakage (CVE-2015-7190)
Mozilla Firefox information leakage (CVE-2015-7190)
Release date:
Updated on:
Affected Systems:
Mozilla Firefox <42.0
Description:
CVE (CAN) ID: CVE-2015-7190
Mozilla Firefox is an open-source web browser that uses the Gecko engine.
On Android systems, the Search function of Mozilla Firefox 42.0 and earlier versions supports the registration of Search Engine URLs in intent. You can also access the URL in the privileged context in combination with the crash report, attackers can read log files and browse the file: URL of HTML documents by constructing applications.
<* Source: vendor
*>
Suggestion:
Vendor patch:
Mozilla
-------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Http://www.mozilla.org/security/announce/2015/mfsa2015-124.html
Https://bugzilla.mozilla.org/show_bug.cgi? Id = 1208520
Manually install Firefox Flash plug-in Ubuntu 14.04
Replacement of Firefox in Ubuntu
Use apt-get to install FireFox and ThunderBird In Debian Linux
Stable Firefox 29 version released-how to install
Mozilla Firefox 31.0 official release and download
Firefox details: click here
Firefox: click here
This article permanently updates the link address: