CVE-2020-15671: Infoleak
When typing in a password under certain conditions, a race may have occured where the InputContext was not being correctly set for the input field, resulting in the typed passwod being saved to the keyboard dictionary.
Other sources
When typing in a password under certain conditions, a race may have occured where the InputContext was not being correctly set for the input field, resulting in the typed password being saved to the keyboard dictionary. This vulnerability affects Firefox for Android < 80.
— MITRE
When typing in a password under certain conditions, a race may have occurred where the InputContext was not being correctly set for the input field, resulting in the typed passwod being saved to the keyboard dictionary.
— Mozilla
Affected Software
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2020-15671?
The severity of CVE-2020-15671 is low.
How does CVE-2020-15671 affect Firefox for Android?
CVE-2020-15671 affects Firefox for Android version < 80.
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2020-15671.
How can I fix CVE-2020-15671?
Update your Firefox for Android to version 80 or higher to fix CVE-2020-15671.
Are there any references for CVE-2020-15671?
Yes, you can find references for CVE-2020-15671 at the following links: [Bugzilla](https://bugzilla.mozilla.org/show_bug.cgi?id=1653862), [Mozilla Security Advisories](https://www.mozilla.org/en-US/security/advisories/mfsa2020-39/).