vulnerability

Oracle Solaris 11: CVE-2020-6812: Vulnerability in Firefox, Thunderbird

Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Mar 25, 2020
Added
Jan 19, 2021
Modified
Feb 17, 2022

Description

The first time AirPods are connected to an iPhone, they become named after the user's name by default (e.g. Jane Doe's AirPods.) Websites with camera or microphone permission are able to enumerate device names, disclosing the user's name. To resolve this issue, Firefox added a special case that renames devices containing the substring 'AirPods' to simply 'AirPods'. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.

Solutions

oracle-solaris-11-4-upgrade-mail-thunderbird-68-6-0-11-4-20-0-1-4-0oracle-solaris-11-4-upgrade-mail-thunderbird-plugin-thunderbird-lightning-68-6-0-11-4-20-0-1-4-0oracle-solaris-11-4-upgrade-web-browser-firefox-68-6-0-11-4-20-0-1-4-0oracle-solaris-11-4-upgrade-web-data-firefox-bookmarks-68-6-0-11-4-20-0-1-4-0
Title
NEW

Explore Exposure Command

Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.