Private browsing mode leaves metadata information, such as URLs, for sites visited in "browser.db" and "browser.db-wal" files within the Firefox profile after the mode is exited. Note: This issue only affects Firefox for Android. Other versions and operating systems are unaffected. This vulnerability affects Firefox < 50.
CVSS Details
- CVSS 3.1 Base Score: 3.3
- CVSS 3.0 Vector: (CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade linux-seamonkeyUpgrade libxulUpgrade seamonkeyUpgrade linux-firefoxUpgrade firefoxUpgrade thunderbirdUpgrade linux-thunderbirdUpgrade firefox-esr | Nov 16, 2016 | Nov 16, 2016 |
| Suse | — | Upgrade mozillafirefox-translations-commonUpgrade mozillafirefoxUpgrade mozillafirefox-translations-otherUpgrade mozillafirefox-devel | Dec 5, 2016 | Nov 15, 2016 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub