CVE-2018-5165: Medium severity firefox vulnerability
In 32-bit versions of Firefox, the Adobe Flash plugin setting for "Enable Adobe Flash protected mode" is unchecked by default even though the Adobe Flash sandbox is actually enabled. The displayed state is the reverse of the true setting, resulting in user confusion. This could cause users to select this setting intending to activate it and inadvertently turn protections off.
Affected Software
Remediation
Patch Available
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
- CVE-2018-5154
- CVE-2018-5155
- CVE-2018-5157
- CVE-2018-5158
- CVE-2018-5159
- CVE-2018-5160
- CVE-2018-5152
- CVE-2018-5153
- CVE-2018-5163
- CVE-2018-5164
- CVE-2018-5166
- CVE-2018-5167
- CVE-2018-5168
- CVE-2018-5169
- CVE-2018-5172
- CVE-2018-5173
- CVE-2018-5174
- CVE-2018-5175
- CVE-2018-5176
- CVE-2018-5177
- CVE-2018-5165
- CVE-2018-5180
- CVE-2018-5181
- CVE-2018-5182
- CVE-2018-5179
- CVE-2018-5151
- CVE-2018-5150
Frequently Asked Questions
What is the vulnerability ID?
The vulnerability ID is CVE-2018-5165.
What is the title of the vulnerability?
The title of the vulnerability is 'In 32-bit versions of Firefox the Adobe Flash plugin setting for Enable Adobe Flash protected mode is unchecked by default.'
What is the severity of CVE-2018-5165?
The severity of CVE-2018-5165 is medium with a CVSS score of 5.3.
How does CVE-2018-5165 affect Mozilla Firefox?
CVE-2018-5165 affects 32-bit versions of Mozilla Firefox up to version 60.0.
How can I fix CVE-2018-5165?
To fix CVE-2018-5165, update to at least version 60.0 of Mozilla Firefox.