CVE-2024-43111: XSS
Published Aug 5, 2024
·Updated
Long pressing on a download link could potentially allow Javascript commands to be executed within the browser
Affected Software
3 affected components
Mozilla Firefox Iphone Os<129
All of the following
Mozilla Firefox=129
Apple iOS
Event History
Aug 5, 2024
CVE Published
via Mozilla·12:00 AM
Aug 6, 2024
CVE Published
via MITRE·03:55 PM
Data Sourced
via MITRE·03:55 PM
DescriptionWeakness
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
1
What is the severity of CVE-2024-43111?
CVE-2024-43111 has been classified as a high-severity vulnerability due to the potential for JavaScript commands to be executed within the browser.
2
How do I fix CVE-2024-43111?
To fix CVE-2024-43111, update your Firefox for iOS to version 129 or later.
3
Which versions of Firefox for iOS are affected by CVE-2024-43111?
CVE-2024-43111 affects all versions of Firefox for iOS prior to version 129.
4
What type of attack is associated with CVE-2024-43111?
The vulnerability allows an attacker to execute JavaScript commands through malicious download links.
5
Is CVE-2024-43111 specific to any operating system?
Yes, CVE-2024-43111 specifically affects Firefox for iOS running on devices with iOS.