Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-3482

Опубликовано: 05 июл. 2023
Источник: ubuntu
Приоритет: medium
CVSS3: 6.5

Описание

When Firefox is configured to block storage of all cookies, it was still possible to store data in localstorage by using an iframe with a source of 'about:blank'. This could have led to malicious websites storing tracking data without permission. This vulnerability affects Firefox < 115.

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

code not present
esm-infra/focal

DNE

focal

released

115.0+build2-0ubuntu0.20.04.3
jammy

not-affected

code not present
kinetic

ignored

end of life, was needs-triage
lunar

not-affected

code not present
trusty

ignored

end of standard support
upstream

released

115.0-1
xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support
devel

not-affected

esm-infra/focal

DNE

focal

not-affected

jammy

not-affected

kinetic

ignored

end of life, was needed
lunar

not-affected

trusty

ignored

end of standard support
upstream

needs-triage

xenial

ignored

end of standard support

Показывать по

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
около 2 лет назад

When Firefox is configured to block storage of all cookies, it was still possible to store data in localstorage by using an iframe with a source of 'about:blank'. This could have led to malicious websites storing tracking data without permission. This vulnerability affects Firefox < 115.

CVSS3: 6.5
debian
около 2 лет назад

When Firefox is configured to block storage of all cookies, it was sti ...

CVSS3: 6.5
github
около 2 лет назад

When Firefox is configured to block storage of all cookies, it was still possible to store data in localstorage by using an iframe with a source of 'about:blank'. This could have led to malicious websites storing tracking data without permission. This vulnerability affects Firefox < 115.

CVSS3: 6.5
fstec
около 2 лет назад

Уязвимость локального хранилища (localstorage) браузера Mozilla Firefox, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

suse-cvrf
около 2 лет назад

Security update for MozillaFirefox, MozillaFirefox-branding-SLE

6.5 Medium

CVSS3