CVE-2015-7191
Publication date 5 November 2015
Last updated 24 July 2024
Ubuntu priority
Description
Mozilla Firefox before 42.0 on Android improperly restricts URL strings in intents, which allows attackers to conduct cross-site scripting (XSS) attacks via vectors involving an intent: URL and fallback navigation, aka "Universal XSS (UXSS)."
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| firefox | ||
| 14.04 LTS trusty | Not in release | |