Image for moz-icons can be accessed through the "moz-icon:" protocol through script in web content even when otherwise prohibited. This could allow for information leakage of which applications are associated with specific MIME types by a malicious page. This vulnerability affects Firefox < 59.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mozilla
Published: 2018-06-11T21:00:00
Updated: 2024-08-05T05:26:46.945Z
Reserved: 2018-01-03T00:00:00
Link: CVE-2018-5140
Vulnrichment
No data.
NVD
Status : Modified
Published: 2018-06-11T21:29:14.517
Modified: 2024-11-21T04:08:11.487
Link: CVE-2018-5140
Redhat
No data.