CVE-2020-6827
MozillaFirefoxVulnerabilityCVSS 4.7Patched
No public exploitation has been reported so far. A fixed version is available (see the table below).
Recommended action: Update to the fixed version listed for your distribution using the native package manager.
Severity metrics
CVSS 3.1 : 4.7 MEDIUM · CVSS 2.0 : 4.3 MEDIUM
Attack vectorNetwork (remote)
Attack complexityLow
Privileges requiredNone
User interactionRequired
ScopeChanged
Confidentiality impactNone
Integrity impactLow
Availability impactNone
Vector: AV:N/AC:L/PR:N/UI:R/S:C/C:N/I:L/A:N
Affected & fixed versions by distribution
Versions are the native distribution strings (backport-aware): RHEL/Debian/SUSE backport fixes, so compare with the distro version comparator (dpkg / rpm / vercmp), not the upstream version.
| Distribution | Package | Affected | Fixed version | Status |
|---|---|---|---|---|
| SUSE:Linux Enterprise Module for Desktop Applications 15 SP1 | MozillaFirefox | - | 68.7.0-3.84.2 | fixed |
| SUSE:HPE Helion OpenStack 8 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:OpenStack Cloud 7 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:OpenStack Cloud 8 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:OpenStack Cloud Crowbar 8 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server for SAP Applications 12 SP1 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server for SAP Applications 12 SP2 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server for SAP Applications 12 SP3 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Software Development Kit 12 SP4 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Software Development Kit 12 SP5 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server 12 SP1-LTSS | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server 12 SP2-LTSS | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server 12 SP2-BCL | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server 12 SP3-LTSS | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server 12 SP3-BCL | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server 12 SP4 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server for SAP Applications 12 SP4 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server 12 SP5 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server for SAP Applications 12 SP5 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Enterprise Storage 5 | MozillaFirefox | - | 68.7.0-109.116.1 | fixed |
| SUSE:Linux Enterprise Server 11 SP4-LTSS | MozillaFirefox | - | 68.7.0-78.70.1 | fixed |
| openSUSE:Leap 15.1 | MozillaFirefox | - | 68.7.0-lp151.2.42.1 | fixed |