Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-2831

Опубликовано: 13 июн. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5.8
CVSS3: 8.8

Описание

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.

РелизСтатусПримечание
devel

released

47.0+build3-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [47.0+build3-0ubuntu0.14.04.1]]
precise

released

47.0+build3-0ubuntu0.12.04.1
trusty

released

47.0+build3-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [47.0+build3-0ubuntu0.14.04.1]
upstream

released

47.0
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

released

47.0+build3-0ubuntu0.15.10.1
xenial

released

47.0+build3-0ubuntu0.16.04.1

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
precise

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

wily

not-affected

xenial

not-affected

Показывать по

EPSS

Процентиль: 69%
0.01347
Низкий

5.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

redhat
около 10 лет назад

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.

CVSS3: 8.8
nvd
около 10 лет назад

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.

CVSS3: 8.8
debian
около 10 лет назад

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not en ...

CVSS3: 8.8
github
около 4 лет назад

Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.

fstec
около 10 лет назад

Уязвимость браузеров Firefox ESR и Firefox, позволяющая нарушителю вызвать отказ в обслуживании, провести кликджекинг или спуфинг-атаку

EPSS

Процентиль: 69%
0.01347
Низкий

5.8 Medium

CVSS2

8.8 High

CVSS3