Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-8900

Опубликовано: 17 сент. 2024
Источник: debian
EPSS Низкий

Описание

An attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigational events. This vulnerability affects Firefox < 129, Firefox ESR < 128.3, and Thunderbird < 128.3.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed129.0-1package
thunderbirdfixed1:128.3.0esr-1package
thunderbirdnot-affectedbookwormpackage
thunderbirdnot-affectedbullseyepackage

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2024-33/#CVE-2024-8900

  • https://www.mozilla.org/en-US/security/advisories/mfsa2024-49/#CVE-2024-8900

EPSS

Процентиль: 42%
0.00196
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
9 месяцев назад

An attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigational events. This vulnerability affects Firefox < 129, Firefox ESR < 128.3, and Thunderbird < 128.3.

CVSS3: 7.5
redhat
9 месяцев назад

An attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigational events. This vulnerability affects Firefox < 129, Firefox ESR < 128.3, and Thunderbird < 128.3.

CVSS3: 7.5
nvd
9 месяцев назад

An attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigational events. This vulnerability affects Firefox < 129, Firefox ESR < 128.3, and Thunderbird < 128.3.

CVSS3: 7.5
github
9 месяцев назад

An attacker could write data to the user's clipboard, bypassing the user prompt, during a certain sequence of navigational events. This vulnerability affects Firefox < 129.

CVSS3: 7.5
fstec
11 месяцев назад

Уязвимость веб-браузеров Firefox ESR, Firefox и почтового клиента Thunderbird, связанная с недостатками разграничения доступа, позволяющая нарушителю оказать воздействие на целостность данных

EPSS

Процентиль: 42%
0.00196
Низкий