In Firefox 67.0.4 and 60.7.2 one more is eliminated 0-day vulnerability

@OpenNet
Show original
Gray-haired Firefox 67.0.3 and 60.7.1 behind releases additional correcting releases 67.0.4 and 60.7.2 in which the second is eliminated 0-day the vulnerability (CVE-2019-11708), allowing to bypass the sandbox-isolation mechanism are published. The problem allows through manipulation with an IPC call of Prompt:Open to open a web content in affiliated process in which sandbox is not used. In combination with other vulnerability this problem allows to bypass all levels of protection and to organize code performance in system...
Analysis
×
Google
Main activity:Science and education
131