Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-25748

Опубликовано: 02 июн. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.3

Описание

By displaying a prompt with a long description, the fullscreen notification could have been hidden, resulting in potential user confusion or spoofing attacks.
This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 111.

РелизСтатусПримечание
bionic

not-affected

firefox on Android only
devel

not-affected

firefox on Android only
esm-infra/focal

DNE

focal

not-affected

firefox on Android only
jammy

not-affected

firefox on Android only
kinetic

not-affected

firefox on Android only
trusty

ignored

end of standard support
upstream

not-affected

debian: Android-specific
xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

esm-infra/focal

DNE

focal

ignored

end of standard support, was needed
jammy

not-affected

kinetic

ignored

end of life, was needed
trusty

ignored

end of standard support
upstream

not-affected

firefox on Android only
xenial

ignored

end of standard support

Показывать по

EPSS

Процентиль: 33%
0.00126
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
nvd
больше 2 лет назад

By displaying a prompt with a long description, the fullscreen notification could have been hidden, resulting in potential user confusion or spoofing attacks. <br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 111.

CVSS3: 4.3
debian
больше 2 лет назад

By displaying a prompt with a long description, the fullscreen notific ...

CVSS3: 4.3
github
больше 2 лет назад

By displaying a prompt with a long description, the fullscreen notification could have been hidden, resulting in potential user confusion or spoofing attacks. <br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 111.

CVSS3: 7.5
fstec
больше 2 лет назад

Уязвимость полноэкранного режима уведомлений браузера Mozilla Firefox операционных систем Android, позволяющая нарушителю проводить спуфинг атаки

suse-cvrf
больше 2 лет назад

Security update for MozillaFirefox

EPSS

Процентиль: 33%
0.00126
Низкий

4.3 Medium

CVSS3