Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-1965

Опубликовано: 13 мар. 2016
Источник: ubuntu
Приоритет: medium
CVSS2: 4.3
CVSS3: 4.3

Описание

Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 mishandle a navigation sequence that returns to the original page, which allows remote attackers to spoof the address bar via vectors involving the history.back method and the location.protocol property.

РелизСтатусПримечание
devel

not-affected

45.0+build2-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [45.0+build2-0ubuntu0.14.04.1]]
precise

released

45.0+build2-0ubuntu0.12.04.1
trusty

released

45.0+build2-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [45.0+build2-0ubuntu0.14.04.1]
upstream

released

45.0
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

released

45.0+build2-0ubuntu0.15.10.1
xenial

not-affected

45.0+build2-0ubuntu1

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
precise

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

not-affected

xenial

not-affected

Показывать по

4.3 Medium

CVSS2

4.3 Medium

CVSS3

Связанные уязвимости

redhat
почти 10 лет назад

Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 mishandle a navigation sequence that returns to the original page, which allows remote attackers to spoof the address bar via vectors involving the history.back method and the location.protocol property.

CVSS3: 4.3
nvd
почти 10 лет назад

Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 mishandle a navigation sequence that returns to the original page, which allows remote attackers to spoof the address bar via vectors involving the history.back method and the location.protocol property.

CVSS3: 4.3
debian
почти 10 лет назад

Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 mishandle ...

CVSS3: 4.3
github
больше 3 лет назад

Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 mishandle a navigation sequence that returns to the original page, which allows remote attackers to spoof the address bar via vectors involving the history.back method and the location.protocol property.

fstec
почти 10 лет назад

Уязвимость браузеров Firefox и Firefox ESR, позволяющая нарушителю подделать адресную строку

4.3 Medium

CVSS2

4.3 Medium

CVSS3