公告ID: KYLIN-2020-6821
安全等级: 重要
产品: Kylin V3
发布日期: 2020年4月8日
CVE: CVE-2020-6821
CVSS3评分: 7.5
概述:
None 描述:
The Mozilla Foundation Security Advisory describes this flaw as: When reading from areas partially or fully outside the source resource with WebGL's copyTexSubImage method, the specification requires the returned values be zero. Previously, this memory was uninitialized, leading to potentially sensitive data disclosure. 系统版本:
KYLIN 3.0.x
KYLIN 3.0.x
KYLIN 3.2.x
KYLIN 3.3.x
KYLIN 3.4.x
KYLIN 3.2.x
KYLIN 3.3.x
KYLIN 3.4.x
受影响包列表:
firefox
thunderbird
thunderbird
thunderbird
thunderbird
firefox-68.7.0-2.el6_10
firefox-68.7.0-2.el7_8
firefox-68.7.0-2.el8_1