Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-36316

Опубликовано: 22 дек. 2022
Источник: debian

Описание

When using the Performance API, an attacker was able to notice subtle differences between PerformanceEntries and thus learn whether the target URL had been subject to a redirect. This vulnerability affects Firefox < 103.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed103.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2022-30/#CVE-2022-36316

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 3 лет назад

When using the Performance API, an attacker was able to notice subtle differences between PerformanceEntries and thus learn whether the target URL had been subject to a redirect. This vulnerability affects Firefox < 103.

CVSS3: 6.1
nvd
около 3 лет назад

When using the Performance API, an attacker was able to notice subtle differences between PerformanceEntries and thus learn whether the target URL had been subject to a redirect. This vulnerability affects Firefox < 103.

CVSS3: 6.1
github
около 3 лет назад

When using the Performance API, an attacker was able to notice subtle differences between PerformanceEntries and thus learn whether the target URL had been subject to a redirect. This vulnerability affects Firefox < 103.

CVSS3: 6.1
fstec
больше 3 лет назад

Уязвимость веб-браузера Firefox, связанная с недостаточной защитой служебных данных, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации