CVE-2020-12388: Input Validation
The Firefox content processes did not sufficiently lockdown access control which could result in a sandbox escape.Note: this issue only affects Firefox on Windows operating systems.
Other sources
The Firefox content processes did not sufficiently lockdown access control which could result in a sandbox escape. Note: this issue only affects Firefox on Windows operating systems.. This vulnerability affects Firefox ESR < 68.8 and Firefox < 76.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2020-12388?
CVE-2020-12388 is rated as a high severity vulnerability due to its potential for sandbox escape.
How do I fix CVE-2020-12388?
To fix CVE-2020-12388, update your Firefox or Firefox ESR to versions 76 or 68.8 respectively.
Who is affected by CVE-2020-12388?
CVE-2020-12388 affects users of Firefox and Firefox ESR running on Windows operating systems.
What type of vulnerability is CVE-2020-12388?
CVE-2020-12388 is a sandbox escape vulnerability that allows for insufficient access control.
When was CVE-2020-12388 disclosed?
CVE-2020-12388 was disclosed by Mozilla as part of their security advisory in 2020.