CVE-2020-12405

Public on 2020-07-09
Modified on 2020-07-17
Description
The Mozilla Foundation Security Advisory describes this flaw as:

When browsing a malicious page, a race condition in our SharedWorkerService could occur and lead to a potentially exploitable crash.
Severity
Important severity
Important
CVSS v3 Base Score
5.3
See breakdown

Affected Packages

Platform Package Release Date Advisory Status
Amazon Linux 2 - Core thunderbird 2020-07-14 ALAS2-2020-1462 Fixed

CVSS Scores

Score Type Score Vector
Amazon Linux CVSSv3 5.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H
NVD CVSSv2 2.6 AV:N/AC:H/Au:N/C:N/I:N/A:P
NVD CVSSv3 5.3 CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:N/I:N/A:H