Description
A lock was missing when accessing a data structure and importing certificate information into the trust database. This vulnerability affects Firefox < 80 and Firefox for Android < 80.
CVSS breakdown
CVSS 3.1
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
Required
Scope
Unchanged
Confidentiality
Low
Integrity
None
Availability
None
Affected products
- Mozilla / Firefoxunspecified – 80
- Mozilla / Firefox80.0
- Mozilla / Firefox for Androidunspecified – 80
- Mozilla / firefox_mobile80.0
References
Updated 12m ago · 8 sources