CVE-2019-11749: Medium severity firefox esr vulnerability
A vulnerability exists in WebRTC where malicious web content can use probing techniques on the getUserMedia API using constraints to reveal device properties of cameras on the system without triggering a user prompt or notification. This allows for the potential fingerprinting of users.
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the vulnerability ID for this WebRTC vulnerability?
The vulnerability ID for this WebRTC vulnerability is CVE-2019-11749.
What is the description of CVE-2019-11749 vulnerability?
The vulnerability allows malicious web content to use probing techniques on the getUserMedia API to reveal device properties of cameras without triggering a user prompt or notification, potentially allowing fingerprinting of users.
Which software are affected by CVE-2019-11749 vulnerability?
The Mozilla Firefox ESR versions up to 68.1 and Mozilla Firefox versions up to 69 are affected by this vulnerability.
What is the severity level of CVE-2019-11749 vulnerability?
The severity level of CVE-2019-11749 vulnerability is Medium (ranked 4 out of 10).
How can I fix the CVE-2019-11749 vulnerability?
To fix the CVE-2019-11749 vulnerability, update your Mozilla Firefox ESR to version 68.1 or later, or update your Mozilla Firefox to version 69 or later.