CVSS2
Attack Vector
NETWORK
Attack Complexity
LOW
Authentication
NONE
Confidentiality Impact
PARTIAL
Integrity Impact
NONE
Availability Impact
NONE
AV:N/AC:L/Au:N/C:P/I:N/A:N
EPSS
Percentile
75.5%
content/base/src/nsDocument.cpp in Mozilla Firefox before 33.0, Firefox ESR
31.x before 31.2, and Thunderbird 31.x before 31.2 does not consider
whether WebRTC video sharing is occurring, which allows remote attackers to
obtain sensitive information from the local camera in certain IFRAME
situations by maintaining a session after the user temporarily navigates
away.
OS | Version | Architecture | Package | Version | Filename |
---|---|---|---|---|---|
ubuntu | 12.04 | noarch | firefox | < 33.0+build2-0ubuntu0.12.04.1 | UNKNOWN |
ubuntu | 14.04 | noarch | firefox | < 33.0+build2-0ubuntu0.14.04.1 | UNKNOWN |
ubuntu | 12.04 | noarch | thunderbird | < 1:31.2.0+build2-0ubuntu0.12.04.1 | UNKNOWN |
ubuntu | 14.04 | noarch | thunderbird | < 1:31.2.0+build2-0ubuntu0.14.04.1 | UNKNOWN |