CVE-2016-1955
13.03.2016, 18:59
Mozilla Firefox before 45.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive information by reading a Content Security Policy (CSP) violation report that contains path information associated with an IFRAME element.Enginsight
Vendor | Product | Version |
---|---|---|
opensuse | leap | 42.1 |
opensuse | opensuse | 13.1 |
opensuse | opensuse | 13.2 |
mozilla | firefox | 𝑥 ≤ 44.0.2 |
𝑥
= Vulnerable software versions

Debian Releases
Debian Product | |||||||||||||||||
---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
firefox |
| ||||||||||||||||
firefox-esr |
|

Ubuntu Releases
Common Weakness Enumeration
References