First published: Tue Jun 26 2018(Updated: )
Last updated 24 July 2024
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/firefox | 135.0.1-1 | |
Firefox | <61.0 | |
Ubuntu | =14.04 | |
Ubuntu | =16.04 | |
Ubuntu | =17.10 | |
Ubuntu | =18.04 | |
Firefox | <61 | 61 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2018-12358 is considered a high severity vulnerability due to the potential risks associated with cross-origin resource reading.
To fix CVE-2018-12358, update your Mozilla Firefox to version 61 or later and ensure your Ubuntu Linux is updated to the latest patched version.
CVE-2018-12358 affects Firefox versions below 61.
Yes, Ubuntu 14.04 is vulnerable to CVE-2018-12358 if it runs an affected version of Firefox.
Yes, malicious sites can exploit CVE-2018-12358 by using service workers to access opaque responses intended to be blocked.