Início
Tendências
Vulnerabilidades
Notícias
Pesquisadores
Por que dbugs?

Magicant Starmen

#53539de 53,638
2.1CVSS total
Vulnerabilidades · 1
PT-2012-2571
2.1
2012-01-31
Mozilla · Firefox · CVE-2012-0450
**Name of the Vulnerable Software and Affected Versions** Mozilla Firefox versions 4.x through 9.0 SeaMonkey versions prior to 2.7 **Description** The issue allows local users to potentially read a Firefox Sync key via standard filesystem operations due to weak permissions set for Firefox Recovery Key.html on Linux and Mac OS X systems. **Recommendations** For Mozilla Firefox versions 4.x through 9.0, update to a version outside of this range to resolve the issue. For SeaMonkey versions prior to 2.7, update to version 2.7 or later to resolve the issue.