vulnerability
Oracle Solaris 11: CVE-2020-6812: Vulnerability in Firefox, Thunderbird
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 5 | (AV:N/AC:L/Au:N/C:P/I:N/A:N) | Mar 25, 2020 | Jan 19, 2021 | Feb 17, 2022 |
Severity
5
CVSS
(AV:N/AC:L/Au:N/C:P/I:N/A:N)
Published
Mar 25, 2020
Added
Jan 19, 2021
Modified
Feb 17, 2022
Description
The first time AirPods are connected to an iPhone, they become named after the user's name by default (e.g. Jane Doe's AirPods.) Websites with camera or microphone permission are able to enumerate device names, disclosing the user's name. To resolve this issue, Firefox added a special case that renames devices containing the substring 'AirPods' to simply 'AirPods'. This vulnerability affects Thunderbird < 68.6, Firefox < 74, Firefox < ESR68.6, and Firefox ESR < 68.6.
Solutions
oracle-solaris-11-4-upgrade-mail-thunderbird-68-6-0-11-4-20-0-1-4-0oracle-solaris-11-4-upgrade-mail-thunderbird-plugin-thunderbird-lightning-68-6-0-11-4-20-0-1-4-0oracle-solaris-11-4-upgrade-web-browser-firefox-68-6-0-11-4-20-0-1-4-0oracle-solaris-11-4-upgrade-web-data-firefox-bookmarks-68-6-0-11-4-20-0-1-4-0
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.