Race Condition Vulnerability in Mozilla Firefox OS Lockscreen Feature
CVE-2015-8511

6.4MEDIUM

Key Information:

Vendor

Mozilla

Vendor
CVE Published:
9 January 2016

What is CVE-2015-8511?

A race condition vulnerability exists in the lockscreen functionality of Mozilla Firefox OS prior to version 2.5. This flaw allows local attackers with physical proximity to exploit the lockscreen feature to bypass passcode protections. By leveraging unspecified attack vectors, they may gain unauthorized access to the device, compromising user privacy and data security. It is crucial for users to update to a secure version to protect against potential exploitation.

References

CVSS V3.1

Score:
6.4
Severity:
MEDIUM
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Physical
Attack Complexity:
High
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.