Loading HuntDB...

GHSA-q3w3-fw86-hj52

GitHub Security Advisory

⚠ Unreviewed MODERATE Has CVE

Advisory Details

In the previous mitigations for Spectre, the resolution or precision of various methods was reduced to counteract the ability to measure precise time intervals. In that work PerformanceNavigationTiming was not adjusted but it was found that it could be used as a precision timer. This vulnerability affects Thunderbird < 60, Firefox ESR < 60.1, and Firefox < 61.

Related CVEs

Key Information

GHSA ID
GHSA-q3w3-fw86-hj52
Published
May 14, 2022 1:52 AM
Last Modified
May 14, 2022 1:52 AM
CVSS Score
5.0 /10
Primary Ecosystem
Unknown
Primary Package
Unknown
GitHub Reviewed
✗ No

Dataset

Last updated: June 12, 2025 6:24 AM

Data from GitHub Advisory Database. This information is provided for research and educational purposes.