Permissions, Privileges, and Access Controls in Firefox for Android - CVE-2024-11702
Published: November 26, 2024
Vulnerability details
The vulnerability allows a remote attacker to gain access to sensitive information.
The vulnerability exists due to inadequate clipboard protection in private browsing mode. When copying sensitive information, such as passwords, from private browsing tabs on Android can lead to this data be stored in the cloud-based clipboard history if enabled.
Affected software
Mozilla Thunderbird
How to mitigate CVE-2024-11702
Mozilla Thunderbird - update to 133.0