Описание
Malicious scripts could cause desynchronization between the address bar and web content before a response is received in Firefox iOS, allowing attacker-controlled pages to be presented under spoofed domains. This vulnerability was fixed in Firefox for iOS 147.4.
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | code not present |
| jammy | not-affected | code not present |
| noble | not-affected | code not present |
| questing | not-affected | code not present |
| upstream | not-affected | debian: Only affects Firefox for iOS |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/noble | ignored | |
| jammy | ignored | |
| noble | ignored | |
| questing | DNE | |
| upstream | not-affected | only Firefox for iOS |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| jammy | DNE | |
| noble | ignored | |
| questing | DNE | |
| upstream | not-affected | only Firefox for iOS |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/bionic | not-affected | only Firefox for iOS |
| jammy | DNE | |
| noble | DNE | |
| questing | DNE | |
| upstream | not-affected | only Firefox for iOS |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/focal | ignored | |
| esm-infra/bionic | ignored | |
| jammy | DNE | |
| noble | DNE | |
| questing | DNE | |
| upstream | not-affected | only Firefox for iOS |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-infra/focal | ignored | |
| jammy | DNE | |
| noble | DNE | |
| questing | DNE | |
| upstream | not-affected | only Firefox for iOS |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| esm-apps/jammy | ignored | |
| jammy | ignored | |
| noble | DNE | |
| questing | DNE | |
| upstream | not-affected | only Firefox for iOS |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | DNE | |
| jammy | ignored | |
| noble | DNE | |
| questing | DNE | |
| upstream | not-affected | only Firefox for iOS |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | code not present |
| jammy | not-affected | only Firefox for iOS |
| noble | not-affected | code not present |
| questing | not-affected | code not present |
| upstream | not-affected | only Firefox for iOS |
Показывать по
EPSS
9.8 Critical
CVSS3
Связанные уязвимости
Malicious scripts could cause desynchronization between the address bar and web content before a response is received in Firefox iOS, allowing attacker-controlled pages to be presented under spoofed domains. This vulnerability was fixed in Firefox for iOS 147.4.
Malicious scripts could cause desynchronization between the address ba ...
Malicious scripts could cause desynchronization between the address bar and web content before a response is received in Firefox iOS, allowing attacker-controlled pages to be presented under spoofed domains. This vulnerability affects Firefox for iOS < 147.4.
EPSS
9.8 Critical
CVSS3