PT-2015-2628 · Mozilla+1 · Firefox+1

Jordi Chancel

·

Published

2015-11-05

·

Updated

2024-12-12

·

CVE-2015-7185

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 42.0 on Android
Description The issue is related to errors in security settings, allowing remote attackers to spoof the address bar via crafted JavaScript code. This can occur when the browser exits fullscreen mode and fails to restore the address bar properly.
Recommendations For versions prior to 42.0, update to version 42.0 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2015-11993
CVE-2015-7185
OPENSUSE-SU-2015_1942-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:14572-1

Affected Products

Firefox
Suse