Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-5394

Опубликовано: 11 июн. 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 6.8
CVSS3: 8.8

Описание

A location bar spoofing attack where the location bar of loaded page will be shown over the content of another tab due to a series of JavaScript events combined with fullscreen mode. Note: This issue only affects Firefox for Android. Other operating systems are not affected. This vulnerability affects Firefox < 51.

РелизСтатусПримечание
devel

not-affected

only affects Firefox for Android
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected [only affects Firefox for Android]]
precise

not-affected

only affects Firefox for Android
trusty

not-affected

only affects Firefox for Android
trusty/esm

DNE

trusty was not-affected [only affects Firefox for Android]
upstream

released

51
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

not-affected

only affects Firefox for Android
yakkety

not-affected

only affects Firefox for Android

Показывать по

РелизСтатусПримечание
devel

not-affected

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was not-affected]
precise

not-affected

trusty

not-affected

trusty/esm

DNE

trusty was not-affected
upstream

not-affected

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

xenial

not-affected

yakkety

not-affected

Показывать по

EPSS

Процентиль: 34%
0.0014
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3

Связанные уязвимости

CVSS3: 8.8
nvd
больше 7 лет назад

A location bar spoofing attack where the location bar of loaded page will be shown over the content of another tab due to a series of JavaScript events combined with fullscreen mode. Note: This issue only affects Firefox for Android. Other operating systems are not affected. This vulnerability affects Firefox < 51.

CVSS3: 8.8
debian
больше 7 лет назад

A location bar spoofing attack where the location bar of loaded page w ...

CVSS3: 8.8
github
больше 3 лет назад

A location bar spoofing attack where the location bar of loaded page will be shown over the content of another tab due to a series of JavaScript events combined with fullscreen mode. Note: This issue only affects Firefox for Android. Other operating systems are not affected. This vulnerability affects Firefox < 51.

suse-cvrf
около 9 лет назад

Security update for MozillaFirefox

EPSS

Процентиль: 34%
0.0014
Низкий

6.8 Medium

CVSS2

8.8 High

CVSS3