Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-34477

Опубликовано: 22 дек. 2022
Источник: ubuntu
Приоритет: medium
CVSS3: 7.5

Описание

The MediaError message property should be consistent to avoid leaking information about cross-origin resources; however for a same-site cross-origin resource, the message could have leaked information enabling XS-Leaks attacks. This vulnerability affects Firefox < 102.

РелизСтатусПримечание
bionic

released

102.0+build2-0ubuntu0.18.04.1
devel

not-affected

code not present
esm-infra/focal

DNE

focal

released

102.0+build2-0ubuntu0.20.04.1
impish

released

102.0+build2-0ubuntu0.21.10.1
jammy

not-affected

code not present
kinetic

not-affected

code not present
lunar

not-affected

code not present
trusty

DNE

upstream

released

102

Показывать по

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
nvd
почти 3 года назад

The MediaError message property should be consistent to avoid leaking information about cross-origin resources; however for a same-site cross-origin resource, the message could have leaked information enabling XS-Leaks attacks. This vulnerability affects Firefox < 102.

CVSS3: 7.5
debian
почти 3 года назад

The MediaError message property should be consistent to avoid leaking ...

CVSS3: 7.5
github
почти 3 года назад

The MediaError message property should be consistent to avoid leaking information about cross-origin resources; however for a same-site cross-origin resource, the message could have leaked information enabling XS-Leaks attacks. This vulnerability affects Firefox < 102.

suse-cvrf
около 3 лет назад

Security update for MozillaFirefox

suse-cvrf
около 3 лет назад

Security update for MozillaFirefox

7.5 High

CVSS3