CVE-2024-11702

Copying sensitive information from Private Browsing tabs on Android, such as passwords, may have inadvertently stored data in the cloud-based clipboard history if enabled. This vulnerability affects Firefox < 133 and Thunderbird < 133.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*

History

05 Apr 2025, 00:41

Type Values Removed Values Added
First Time Mozilla
Mozilla thunderbird
Mozilla firefox
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1918884 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1918884 - Issue Tracking, Permissions Required
References () https://www.mozilla.org/security/advisories/mfsa2024-63/ - () https://www.mozilla.org/security/advisories/mfsa2024-63/ - Vendor Advisory
References () https://www.mozilla.org/security/advisories/mfsa2024-67/ - () https://www.mozilla.org/security/advisories/mfsa2024-67/ - Vendor Advisory
CPE cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*

27 Nov 2024, 16:15

Type Values Removed Values Added
CWE CWE-838
Summary
  • (es) La copia de información confidencial de las pestañas de Navegación privada en Android, como las contraseñas, puede haber almacenado datos inadvertidamente en el historial del portapapeles basado en la nube si está habilitada. Esta vulnerabilidad afecta a Firefox &lt; 133 y Thunderbird &lt; 133.
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5

26 Nov 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-26 14:15

Updated : 2025-04-05 00:41


NVD link : CVE-2024-11702

Mitre link : CVE-2024-11702

CVE.ORG link : CVE-2024-11702


JSON object : View

Products Affected

mozilla

  • thunderbird
  • firefox
CWE
CWE-838

Inappropriate Encoding for Output Context