First published: Tue Jan 23 2024(Updated: )
It was possible for certain browser prompts and dialogs to be activated or dismissed unintentionally by the user due to an incorrect timestamp used to prevent input after page load. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.
Credit: security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Thunderbird | <115.7 | 115.7 |
redhat/firefox | <115.7 | 115.7 |
redhat/thunderbird | <115.7 | 115.7 |
Mozilla Firefox ESR | <115.7 | 115.7 |
Mozilla Firefox | <122 | 122 |
Mozilla Firefox | <122.0 | |
Mozilla Firefox ESR | <115.7 | |
Mozilla Thunderbird | <115.7 | |
Debian Debian Linux | =10.0 | |
ubuntu/firefox | <122.0+ | 122.0+ |
ubuntu/thunderbird | <1:115.8.1+ | 1:115.8.1+ |
ubuntu/thunderbird | <1:115.8.1+ | 1:115.8.1+ |
ubuntu/thunderbird | <1:115.8.1+ | 1:115.8.1+ |
ubuntu/thunderbird | <115.7 | 115.7 |
debian/firefox | 125.0.2-1 | |
debian/firefox-esr | <=91.12.0esr-1~deb10u1 | 115.10.0esr-1~deb10u1 115.7.0esr-1~deb11u1 115.10.0esr-1~deb11u1 115.7.0esr-1~deb12u1 115.10.0esr-1~deb12u1 115.8.0esr-1 115.10.0esr-1 |
debian/thunderbird | <=1:91.12.0-1~deb10u1 | 1:115.10.1-1~deb10u1 1:115.7.0-1~deb11u1 1:115.10.1-1~deb11u1 1:115.7.0-1~deb12u1 1:115.10.1-1~deb12u1 1:115.10.1-1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
(Appears in the following advisories)
(Found alongside the following vulnerabilities)