vulnerability
MFSA2020-36 Firefox: Security Vulnerabilities fixed in Firefox 80 (CVE-2020-12400)
| Severity | CVSS | Published | Added | Modified |
|---|---|---|---|---|
| 1 | (AV:L/AC:H/Au:N/C:P/I:N/A:N) | Aug 25, 2020 | Aug 26, 2020 | Mar 27, 2026 |
Severity
1
CVSS
(AV:L/AC:H/Au:N/C:P/I:N/A:N)
Published
Aug 25, 2020
Added
Aug 26, 2020
Modified
Mar 27, 2026
Description
When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80.
Solution
mozilla-firefox-upgrade-80_0
NEW
Explore Exposure Command
Confidently identify and prioritize exposures from endpoint to cloud with full attack surface visibility and threat-aware risk context.