First published: Tue Dec 19 2023(Updated: )
Browser tab titles were being leaked by GNOME to system logs. This could potentially expose the browsing habits of users running in a private tab.
Credit: security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/firefox | 135.0.1-1 | |
Firefox | <121 | 121 |
Firefox | <121.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Found alongside the following vulnerabilities)
CVE-2023-6872 has been rated as a highly critical vulnerability due to the potential exposure of user browsing habits.
To mitigate CVE-2023-6872, update Mozilla Firefox to version 121.0 or higher, or the specified patched version from your distribution.
CVE-2023-6872 affects Mozilla Firefox versions up to and including 121.0.
CVE-2023-6872 can lead to the unintentional disclosure of private browsing information, specifically the titles of tabs, which could compromise user privacy.
CVE-2023-6872 primarily affects systems running GNOME that utilize Mozilla Firefox.