Total vulnerabilities in the database
As part of a winning Pwn2Own entry, a researcher demonstrated a sandbox escape by installing a malicious language pack and then opening a browser feature that used the compromised translation. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.
Software | From | Fixed in |
---|---|---|
mozilla / firefox | - | 68.0 |
mozilla / firefox_esr | - | 60.8 |
mozilla / thunderbird | - | 60.8 |
debian / debian_linux | 8.0 | 8.0.x |
novell / suse_package_hub_for_suse_linux_enterprise | 12 | 12.x |
opensuse / leap | 15.0 | 15.0.x |
opensuse / leap | 15.1 | 15.1.x |