First published: Tue Mar 08 2022(Updated: )
A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes this flaw as: When resizing a popup after requesting fullscreen access, the popup would not display the fullscreen notification.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
redhat/firefox | <0:91.7.0-3.el7_9 | 0:91.7.0-3.el7_9 |
redhat/thunderbird | <0:91.7.0-2.el7_9 | 0:91.7.0-2.el7_9 |
redhat/firefox | <0:91.7.0-3.el8_5 | 0:91.7.0-3.el8_5 |
redhat/thunderbird | <0:91.7.0-2.el8_5 | 0:91.7.0-2.el8_5 |
redhat/firefox | <0:91.7.0-3.el8_1 | 0:91.7.0-3.el8_1 |
redhat/thunderbird | <0:91.7.0-2.el8_1 | 0:91.7.0-2.el8_1 |
redhat/firefox | <0:91.7.0-3.el8_2 | 0:91.7.0-3.el8_2 |
redhat/thunderbird | <0:91.7.0-2.el8_2 | 0:91.7.0-2.el8_2 |
redhat/firefox | <0:91.7.0-3.el8_4 | 0:91.7.0-3.el8_4 |
redhat/thunderbird | <0:91.7.0-2.el8_4 | 0:91.7.0-2.el8_4 |
redhat/firefox | <91.7 | 91.7 |
redhat/thunderbird | <91.7 | 91.7 |
Thunderbird | <91.7 | 91.7 |
Firefox | <98.0 | |
Firefox ESR | <91.7 | |
Thunderbird | <91.7 | |
Firefox | <98 | 98 |
Firefox ESR | <91.7 | 91.7 |
<98.0 | ||
<91.7 | ||
<91.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)
CVE-2022-26383 is classified as a moderate severity vulnerability.
To fix CVE-2022-26383, update Mozilla Firefox to version 98 or greater, or Firefox ESR to version 91.7 or greater.
CVE-2022-26383 affects Firefox versions prior to 98 and Firefox ESR versions prior to 91.7.
Yes, Thunderbird versions prior to 91.7 are also impacted by CVE-2022-26383.
The vulnerability occurs when resizing a popup window after requesting fullscreen access, preventing the fullscreen notification from displaying.