Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-7787

Опубликовано: 11 июн. 2018
Источник: ubuntu
Приоритет: medium
CVSS2: 5
CVSS3: 7.5

Описание

Same-origin policy protections can be bypassed on pages with embedded iframes during page reloads, allowing the iframes to access content on the top level page, leading to information disclosure. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.

РелизСтатусПримечание
artful

released

55.0.2+build1-0ubuntu4
bionic

released

55.0.2+build1-0ubuntu4
cosmic

released

55.0.2+build1-0ubuntu4
devel

released

55.0.2+build1-0ubuntu4
disco

released

55.0.2+build1-0ubuntu4
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [55.0.1+build2-0ubuntu0.14.04.2]]
precise/esm

DNE

trusty

released

55.0.1+build2-0ubuntu0.14.04.2
trusty/esm

DNE

trusty was released [55.0.1+build2-0ubuntu0.14.04.2]
upstream

released

55.0

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

code not present
cosmic

DNE

devel

DNE

disco

DNE

esm-apps/bionic

not-affected

code not present
esm-infra-legacy/trusty

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

Показывать по

РелизСтатусПримечание
artful

released

1:52.4.0+build1-0ubuntu2
bionic

released

1:52.4.0+build1-0ubuntu2
cosmic

released

1:52.4.0+build1-0ubuntu2
devel

released

1:52.4.0+build1-0ubuntu2
disco

released

1:52.4.0+build1-0ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1:52.3.0+build1-0ubuntu0.14.04.1]]
precise/esm

DNE

trusty

released

1:52.3.0+build1-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [1:52.3.0+build1-0ubuntu0.14.04.1]
upstream

released

52.3.0

Показывать по

5 Medium

CVSS2

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
почти 8 лет назад

Same-origin policy protections can be bypassed on pages with embedded iframes during page reloads, allowing the iframes to access content on the top level page, leading to information disclosure. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.

CVSS3: 7.5
nvd
около 7 лет назад

Same-origin policy protections can be bypassed on pages with embedded iframes during page reloads, allowing the iframes to access content on the top level page, leading to information disclosure. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.

CVSS3: 7.5
debian
около 7 лет назад

Same-origin policy protections can be bypassed on pages with embedded ...

CVSS3: 7.5
github
около 3 лет назад

Same-origin policy protections can be bypassed on pages with embedded iframes during page reloads, allowing the iframes to access content on the top level page, leading to information disclosure. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.

CVSS3: 7.5
fstec
больше 8 лет назад

Уязвимость браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, связанная с недостатками в реализации SOP (Same-origin policy), позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

5 Medium

CVSS2

7.5 High

CVSS3