Security Advisory

CVE-2018-5121

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2018-06-11 21:00:00
Last updated 2024-08-05 05:26:46
Assigner mozilla
State PUBLISHED

Description

Low descenders on some Tibetan characters in several fonts on OS X are clipped when rendered in the addressbar. When used as part of an Internationalized Domain Name (IDN) this can be used for domain name spoofing attacks. Note: This attack only affects OS X operating systems. Other operating systems are unaffected. This vulnerability affects Firefox < 58.