Vulnerability CVE-2020-15676: Information

Description

Firefox sometimes ran the onload handler for SVG elements that the DOM sanitizer decided to remove, resulting in JavaScript being executed after pasting attacker-controlled data into a contenteditable element. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.

Severity: MEDIUM (6.1) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N

Published: Oct. 1, 2020
Modified: Nov. 16, 2022
Error type identifier: CWE-79

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
firefoxsisyphus81.0-alt1125.0.2-alt1ALT-PU-2020-2889-1258859Fixed
firefoxp1081.0-alt1118.0.2-alt0.p10.1ALT-PU-2020-2889-1258859Fixed
firefoxp982.0.3-alt0.1.p9105.0.1-alt0.c9.1ALT-PU-2021-1152-1264322Fixed
firefoxc10f181.0-alt1112.0.2-alt0.p10.1ALT-PU-2020-2889-1258859Fixed
firefoxc9f293.0-alt0.p9.1105.0.1-alt0.c9.1ALT-PU-2021-3368-1288792Fixed
firefox-esrsisyphus78.3.0-alt1115.10.0-alt1ALT-PU-2020-2871-1258564Fixed
firefox-esrp1091.1.0-alt1115.10.0-alt1ALT-PU-2021-2881-1284980Fixed
firefox-esrp978.3.0-alt0.1.p9102.11.0-alt0.c9.1ALT-PU-2020-2933-1254920Fixed
firefox-esrc10f191.1.0-alt1115.9.1-alt0.c10.1ALT-PU-2021-2881-1284980Fixed
firefox-esrc9f291.3.0-alt1.c9.1102.12.0-alt0.c9.1ALT-PU-2021-3369-1288792Fixed
thunderbirdsisyphus78.3.0-alt1115.9.0-alt1ALT-PU-2020-2876-1258647Fixed
thunderbirdp1078.3.0-alt1115.9.0-alt1ALT-PU-2020-2876-1258647Fixed
thunderbirdp978.3.1-alt1102.11.0-alt0.c9.1ALT-PU-2020-2934-1254920Fixed
thunderbirdc10f178.3.0-alt1115.9.0-alt0.c10.1ALT-PU-2020-2876-1258647Fixed
thunderbirdc9f278.7.0-alt0.1.c9102.11.0-alt0.c9.1ALT-PU-2021-1369-1264611Fixed

References to Advisories, Solutions, and Tools

Hyperlink
Resource
https://www.mozilla.org/security/advisories/mfsa2020-42/
  • Release Notes
  • Vendor Advisory
https://www.mozilla.org/security/advisories/mfsa2020-43/
  • Release Notes
  • Vendor Advisory
https://bugzilla.mozilla.org/show_bug.cgi?id=1646140
  • Issue Tracking
  • Permissions Required
  • Vendor Advisory
https://www.mozilla.org/security/advisories/mfsa2020-44/
  • Release Notes
  • Vendor Advisory
DSA-4770
  • Third Party Advisory
[debian-lts-announce] 20201016 [SECURITY] [DLA 2408-1] thunderbird security update
  • Mailing List
  • Third Party Advisory
GLSA-202010-02
  • Third Party Advisory
openSUSE-SU-2020:1785
  • Broken Link
  • Mailing List
  • Third Party Advisory
openSUSE-SU-2020:1780
  • Broken Link
  • Mailing List
  • Third Party Advisory
    1. Configuration 1

      cpe:2.3:a:mozilla:firefox_esr:*:*:*:*:*:*:*:*
      End excliding
      78.3

      cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
      End excliding
      78.3

      cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
      End excliding
      81.0

      Configuration 2

      cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

      cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*

      Configuration 3

      cpe:2.3:o:opensuse:leap:15.1:*:*:*:*:*:*:*

      cpe:2.3:o:opensuse:leap:15.2:*:*:*:*:*:*:*