漏洞信息详情
Mozilla Firefox 资源管理错误漏洞
漏洞简介
Mozilla Firefox是美国Mozilla基金会的一款开源Web浏览器。
Firefox 存在资源管理错误漏洞,攻击者可利用该漏洞通过Firefox的COOKIE-ECHO SCTP Chunk 触发拒绝服务,并运行代码。
漏洞公告
目前厂商已发布升级补丁以修复漏洞,补丁获取链接:
https://www.mozilla.org/en-US/security/advisories/mfsa2021-01/#CVE-2020-16044
参考网址
来源:MISC
链接:https://crbug.com/1163228
来源:MISC
链接:https://chromereleases.googleblog.com/2021/01/stable-channel-update-for-desktop_19.html
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-multiple-vulnerabilities-in-mozilla-firefox-affect-ibm-cloud-pak-for-multicloud-management-monitoring/
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Firefox-use-after-free-via-COOKIE-ECHO-SCTP-Chunk-34250
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-multiple-vulnerabilities-of-mozilla-firefox-less-than-firefox-78-9-0-esr-cve-2020-16044-have-affected-synthetic-playback-agent-8-1-4-0-8-1-4-if13-icam2019-3-0-2020-2-0/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/160876/Red-Hat-Security-Advisory-2021-0055-01.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0128/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0339/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0209/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0426
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0087/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/160926/Red-Hat-Security-Advisory-2021-0089-01.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0362/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0100/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0242/
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/160856/Ubuntu-Security-Notice-USN-4687-1.html
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0201/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0067/
来源:vigilance.fr
链接:https://vigilance.fr/vulnerability/Chrome-multiple-vulnerabilities-34378
来源:packetstormsecurity.com
链接:https://packetstormsecurity.com/files/161074/Gentoo-Linux-Security-Advisory-202101-13.html
来源:access.redhat.com
链接:https://access.redhat.com/security/cve/cve-2020-16044
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0093/
来源:www.ibm.com
链接:https://www.ibm.com/blogs/psirt/security-bulletin-multiple-vulnerabilities-of-mozilla-firefox-less-than-firefox-78-9-0-esr-cve-2020-16044-have-affected-synthetic-playback-agent-8-1-4-0-8-1-4-if13-cp4mcm2-2/
来源:www.auscert.org.au
链接:https://www.auscert.org.au/bulletins/ESB-2021.0081/
受影响实体
暂无
补丁
- Mozilla Firefox 安全漏洞的修复措施<!--2021-1-6-->
还没有评论,来说两句吧...