Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7j6g-vw57-cfwm

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

The layout engine in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 executes different code for visited and unvisited links during the processing of Cascading Style Sheets (CSS) token sequences, which makes it easier for remote attackers to obtain sensitive information about visited web pages via a timing attack.

The layout engine in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 executes different code for visited and unvisited links during the processing of Cascading Style Sheets (CSS) token sequences, which makes it easier for remote attackers to obtain sensitive information about visited web pages via a timing attack.

EPSS

Процентиль: 40%
0.00178
Низкий

Дефекты

CWE-362

Связанные уязвимости

ubuntu
около 14 лет назад

The layout engine in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 executes different code for visited and unvisited links during the processing of Cascading Style Sheets (CSS) token sequences, which makes it easier for remote attackers to obtain sensitive information about visited web pages via a timing attack.

nvd
около 14 лет назад

The layout engine in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 executes different code for visited and unvisited links during the processing of Cascading Style Sheets (CSS) token sequences, which makes it easier for remote attackers to obtain sensitive information about visited web pages via a timing attack.

debian
около 14 лет назад

The layout engine in Mozilla Firefox before 4.0, Thunderbird before 3. ...

EPSS

Процентиль: 40%
0.00178
Низкий

Дефекты

CWE-362