Vulnerability CVE-2019-11715: Information

Description

Due to an error while parsing page content, it is possible for properly sanitized user input to be misinterpreted and lead to XSS hazards on web sites in certain circumstances. This vulnerability affects Firefox ESR < 60.8, Firefox < 68, and Thunderbird < 60.8.

Severity: MEDIUM (6.1) Vector: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Published: July 23, 2019
Modified: July 29, 2019
Error type identifier: CWE-79

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
firefoxsisyphus68.0-alt1126.0.1-alt1ALT-PU-2019-2301-1234573Fixed
firefoxp1068.0-alt1118.0.2-alt0.p10.1ALT-PU-2019-2301-1234573Fixed
firefoxp968.0.1-alt0.p9.1105.0.1-alt0.c9.1ALT-PU-2019-2479-1235125Fixed
firefoxp868.0.1-alt0.M80P.168.0.1-alt0.M80P.1ALT-PU-2019-2938-1236175Fixed
firefoxc10f168.0-alt1112.0.2-alt0.p10.1ALT-PU-2019-2301-1234573Fixed
firefoxc9f268.0.1-alt0.p9.1105.0.1-alt0.c9.1ALT-PU-2019-2479-1235125Fixed
firefoxc760.8.0-alt0.M70C.160.8.0-alt0.M70C.1ALT-PU-2019-2317-1234651Fixed
firefoxp1168.0-alt1126.0.1-alt1ALT-PU-2019-2301-1234573Fixed
firefox-esrsisyphus60.8.0-alt1115.11.0-alt1ALT-PU-2019-2231-1234195Fixed
firefox-esrp1060.8.0-alt1115.11.0-alt1ALT-PU-2019-2231-1234195Fixed
firefox-esrp960.8.0-alt1102.11.0-alt0.c9.1ALT-PU-2019-2233-1234196Fixed
firefox-esrp860.8.0-alt0.M80P.168.4.1-alt0.M80P.1ALT-PU-2019-2243-1234197Fixed
firefox-esrc10f160.8.0-alt1115.9.1-alt0.c10.1ALT-PU-2019-2231-1234195Fixed
firefox-esrc9f260.8.0-alt1102.12.0-alt0.c9.1ALT-PU-2019-2233-1234196Fixed
firefox-esrp1160.8.0-alt1115.11.0-alt1ALT-PU-2019-2231-1234195Fixed
thunderbirdsisyphus60.8.0-alt1115.9.0-alt1ALT-PU-2019-2249-1234350Fixed
thunderbirdp1060.8.0-alt1115.9.0-alt1ALT-PU-2019-2249-1234350Fixed
thunderbirdp960.8.0-alt1102.11.0-alt0.c9.1ALT-PU-2019-2259-1234411Fixed
thunderbirdp860.8.0-alt0.M80P.160.8.0-alt0.M80P.1ALT-PU-2019-2277-1234413Fixed
thunderbirdc10f160.8.0-alt1115.9.0-alt0.c10.1ALT-PU-2019-2249-1234350Fixed
thunderbirdc9f260.8.0-alt1102.11.0-alt0.c9.1ALT-PU-2019-2259-1234411Fixed
thunderbirdc760.8.0-alt0.M70C.160.8.0-alt0.M70C.1ALT-PU-2019-2345-1234994Fixed
thunderbirdp1160.8.0-alt1115.9.0-alt1ALT-PU-2019-2249-1234350Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
      End excliding
      68.0

      cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:*
      End excliding
      60.8.0

      cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
      End excliding
      60.8.0