Firefox におけるセキュリティ機能に関する脆弱性
| Title |
Firefox におけるセキュリティ機能に関する脆弱性
|
| Summary |
Firefox には、セキュリティ機能に関する脆弱性が存在します。
|
| Possible impacts |
情報を改ざんされる可能性があります。 |
| Solution |
ベンダより正式な対策が公開されています。ベンダ情報を参照して適切な対策を実施してください。 |
| Publication Date |
May 9, 2018, midnight |
| Registration Date |
Aug. 20, 2018, 11:30 a.m. |
| Last Update |
Aug. 20, 2018, 11:30 a.m. |
|
CVSS3.0 : 警告
|
| Score |
5.3
|
| Vector |
CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:L/A:N |
|
CVSS2.0 : 警告
|
| Score |
5
|
| Vector |
AV:N/AC:L/Au:N/C:N/I:P/A:N |
Affected System
| Mozilla Foundation |
|
Mozilla Firefox 60 未満
|
CVE (情報セキュリティ 共通脆弱性識別子)
CWE (共通脆弱性タイプ一覧)
ベンダー情報
Change Log
| No |
Changed Details |
Date of change |
| 1 |
[2018年08月20日] 掲載 |
Aug. 20, 2018, 11:30 a.m. |
NVD Vulnerability Information
CVE-2018-5165
| Summary |
In 32-bit versions of Firefox, the Adobe Flash plugin setting for "Enable Adobe Flash protected mode" is unchecked by default even though the Adobe Flash sandbox is actually enabled. The displayed state is the reverse of the true setting, resulting in user confusion. This could cause users to select this setting intending to activate it and inadvertently turn protections off. This vulnerability affects Firefox < 60.
|
| Publication Date |
June 12, 2018, 6:29 a.m. |
| Registration Date |
March 1, 2021, 7:30 p.m. |
| Last Update |
Nov. 21, 2024, 1:08 p.m. |
Affected software configurations
| Configuration1 |
or higher |
or less |
more than |
less than |
| cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:x86:* |
|
|
|
60.0 |
Related information, measures and tools
Common Vulnerabilities List