First published: Tue May 05 2020(Updated: )
Incorrect origin serialization of URLs with IPv6 addresses could lead to incorrect security checks. This vulnerability affects Firefox < 76.
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <76 | 76 |
Mozilla Firefox | <76.0 | |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0+ | 76.0+ |
ubuntu/firefox | <76.0 | 76.0 |
ubuntu/firefox | <76.0+ | 76.0+ |
debian/firefox | 130.0-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2020-12390 is classified as a moderate severity vulnerability affecting Firefox versions prior to 76.
To fix CVE-2020-12390, upgrade your Firefox browser to version 76 or later.
All versions of Firefox prior to 76 are affected by CVE-2020-12390.
CVE-2020-12390 can lead to incorrect origin serialization of URLs, affecting security checks.
CVE-2020-12390 is relevant for all platforms running affected versions of Firefox, including various Ubuntu and Debian packages.