Описание
browser/base/content/browser.js in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to spoof the address bar via a javascript: URL.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 5 | thunderbird | Not affected | ||
Red Hat Enterprise Linux 6 | thunderbird | Not affected | ||
Red Hat Enterprise Linux 7 | thunderbird | Not affected | ||
Red Hat Enterprise Linux 5 | firefox | Fixed | RHSA-2016:0373 | 09.03.2016 |
Red Hat Enterprise Linux 6 | firefox | Fixed | RHSA-2016:0373 | 09.03.2016 |
Red Hat Enterprise Linux 7 | firefox | Fixed | RHSA-2016:0373 | 09.03.2016 |
Показывать по
Дополнительная информация
Статус:
4.3 Medium
CVSS2
Связанные уязвимости
browser/base/content/browser.js in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to spoof the address bar via a javascript: URL.
browser/base/content/browser.js in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to spoof the address bar via a javascript: URL.
browser/base/content/browser.js in Mozilla Firefox before 45.0 and Fir ...
browser/base/content/browser.js in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to spoof the address bar via a javascript: URL.
Уязвимость браузеров Firefox и Firefox ESR, позволяющая нарушителю подделать адресную строку
4.3 Medium
CVSS2