Mozilla: Proxy Auto-Configuration file can define localhost access to be proxied
Published Feb 5, 2019
5.9
MEDIUMCVSS 3.1
EPSS 2.20%
Description
When proxy auto-detection is enabled, if a web server serves a Proxy Auto-Configuration (PAC) file or if a PAC file is loaded locally, this PAC file can specify that requests to the localhost are to be sent through the proxy to another server. This behavior is disallowed by default when a proxy is manually configured, but when enabled could allow for attacks on services and tools that bind to the localhost for networked behavior if they are accessed through browsing. This vulnerability affects Firefox < 65.
Affected products
-
- Version unspecifiedStatusaffectedConstraints<65
- Version
Configuration 2
- 14.04
- 16.04
- 18.04
- 18.10
Configuration 3
- 8.0
- 9.0
Configuration 4
- 8.0
- 6.0
- 7.0
- 8.1
- 8.2
- 8.4
- 8.6
- 6.0
- 7.0
- 7.6
- 8.2
- 8.4
- 8.6
- 7.6
- 7.6
- 8.2
- 8.4
- 8.6
- 6.0
- 7.0
No data.
Red Hat Enterprise Linux 6
firefox-0:60.6.0-3.el6_10
Fixed · RHSA-2019:0623
Red Hat Enterprise Linux 6
thunderbird-0:60.6.1-1.el6_10
Fixed · RHSA-2019:0680
Red Hat Enterprise Linux 7
firefox-0:60.6.0-3.el7_6
Fixed · RHSA-2019:0622
Red Hat Enterprise Linux 7
thunderbird-0:60.6.1-1.el7_6
Fixed · RHSA-2019:0681
Red Hat Enterprise Linux 8
firefox-0:60.6.1-1.el8
Fixed · RHSA-2019:0966
Red Hat Enterprise Linux 8
thunderbird-0:60.6.1-1.el8
Fixed · RHSA-2019:1144
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 6 | firefox-0:60.6.0-3.el6_10 | Fixed | RHSA-2019:0623 |
| Red Hat Enterprise Linux 6 | thunderbird-0:60.6.1-1.el6_10 | Fixed | RHSA-2019:0680 |
| Red Hat Enterprise Linux 7 | firefox-0:60.6.0-3.el7_6 | Fixed | RHSA-2019:0622 |
| Red Hat Enterprise Linux 7 | thunderbird-0:60.6.1-1.el7_6 | Fixed | RHSA-2019:0681 |
| Red Hat Enterprise Linux 8 | firefox-0:60.6.1-1.el8 | Fixed | RHSA-2019:0966 |
| Red Hat Enterprise Linux 8 | thunderbird-0:60.6.1-1.el8 | Fixed | RHSA-2019:1144 |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
References (26)
- http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00035.html vendor-advisoryx_refsource_SUSEBroken LinkMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-03/msg00043.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00023.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2019-04/msg00043.html vendor-advisoryx_refsource_SUSEMailing ListThird Party Advisory
- http://www.securityfocus.com/bid/106773 vdb-entryx_refsource_BIDBroken LinkThird Party AdvisoryVDB Entry
- https://access.redhat.com/errata/RHSA-2019:0622 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0623 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0680 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0681 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:0966 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/errata/RHSA-2019:1144 vendor-advisoryx_refsource_REDHATThird Party Advisory
- https://access.redhat.com/security/cve/CVE-2018-18506 Vendor Advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=1690673 Issue Tracking
- https://lists.debian.org/debian-lts-announce/2019/03/msg00024.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2019/04/msg00000.html mailing-listx_refsource_MLISTMailing ListThird Party Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2018-18506
- https://seclists.org/bugtraq/2019/Apr/0 mailing-listx_refsource_BUGTRAQMailing ListThird Party Advisory
- https://seclists.org/bugtraq/2019/Mar/28 mailing-listx_refsource_BUGTRAQMailing ListThird Party Advisory
- https://security.gentoo.org/glsa/201904-07 vendor-advisoryx_refsource_GENTOOThird Party Advisory
- https://usn.ubuntu.com/3874-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://usn.ubuntu.com/3927-1/ vendor-advisoryx_refsource_UBUNTUThird Party Advisory
- https://www.cve.org/CVERecord?id=CVE-2018-18506
- https://www.debian.org/security/2019/dsa-4411 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- https://www.debian.org/security/2019/dsa-4420 vendor-advisoryx_refsource_DEBIANThird Party Advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2019-08/#CVE-2018-18506
- https://www.mozilla.org/security/advisories/mfsa2019-01/ x_refsource_CONFIRMVendor Advisory
Change history (0)
No recorded changes yet.