First published: Tue Nov 14 2017(Updated: )
Last updated 24 July 2024
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | <57 | 57 |
Mozilla Firefox | <=56.0.2 | |
debian/firefox | 131.0.2-2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2017-7833 is a vulnerability that allows Arabic and Indic vowel marker characters to be combined with Latin characters in a domain name, allowing for domain spoofing attacks.
CVE-2017-7833 allows the non-Latin character in a domain name to be hidden from most viewers, enabling domain spoofing attacks.
Mozilla Firefox version up to and excluding 57.0.2, and certain versions of Ubuntu and Debian with Firefox.
CVE-2017-7833 has a severity rating of 5.3, which is considered medium.
Upgrade to Mozilla Firefox version 57.0.2 or above, or follow the provided remedies for Ubuntu and Debian versions.