Mozilla Firefox OS 2.2

CPE Details

Mozilla Firefox OS 2.2
2.2
2016-01-13
14h22 +00:00
2016-01-13
14h22 +00:00
Alerte pour un CPE
Stay informed of any changes for a specific CPE.
Notifications manage

CPE Name: cpe:2.3:o:mozilla:firefox_os:2.2:*:*:*:*:*:*:*

Informations

Vendor

mozilla

Product

firefox_os

Version

2.2

Related CVE

Open and find in CVE List

CVE ID Published Description Score Severity
CVE-2015-8510 2016-01-09 01h00 +00:00 Cross-site scripting (XSS) vulnerability in the internationalization feature in the default homescreen app in Mozilla Firefox OS before 2.5 allows user-assisted remote attackers to inject arbitrary web script or HTML via a crafted web site that is mishandled during "Add to home screen" bookmarking.
6.1
Medium
CVE-2015-8511 2016-01-09 01h00 +00:00 Race condition in the lockscreen feature in Mozilla Firefox OS before 2.5 allows physically proximate attackers to bypass an intended passcode requirement via unspecified vectors.
6.4
Medium
CVE-2015-8512 2016-01-09 01h00 +00:00 The lockscreen feature in Mozilla Firefox OS before 2.5 does not properly restrict failed authentication attempts, which makes it easier for physically proximate attackers to obtain access by entering many passcode guesses.
4.6
Medium
CVE-2015-4000 2015-05-20 22h00 +00:00 The TLS protocol 1.2 and earlier, when a DHE_EXPORT ciphersuite is enabled on a server but not on a client, does not properly convey a DHE_EXPORT choice, which allows man-in-the-middle attackers to conduct cipher-downgrade attacks by rewriting a ClientHello with DHE replaced by DHE_EXPORT and then rewriting a ServerHello with DHE_EXPORT replaced by DHE, aka the "Logjam" issue.
3.7
Low