First published: Wed May 09 2018(Updated: )
Last updated 24 July 2024
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <60 | 60 |
Canonical Ubuntu Linux | =14.04 | |
Canonical Ubuntu Linux | =16.04 | |
Canonical Ubuntu Linux | =17.10 | |
Canonical Ubuntu Linux | =18.04 | |
Mozilla Firefox | <60.0 | |
debian/firefox | 131.0.3-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2018-5172 is a vulnerability that allows the execution of injected script content when a user pastes script from the clipboard into the Live Bookmarks page or the PDF viewer in Firefox.
Users of Mozilla Firefox versions up to 60.0 and Ubuntu Linux versions 14.04, 16.04, 17.10, and 18.04 with Firefox versions up to 60.0 are affected.
CVE-2018-5172 has a severity rating of medium.
Update your Mozilla Firefox to version 60.0 or later and ensure that you are using the latest version of Ubuntu Linux.
You can find more information about CVE-2018-5172 on the Mozilla Bugzilla, Mozilla Security Advisories, and SecurityFocus websites.