CVE-2024-4773: High severity Mozilla Firefox vulnerability
Last updated 24 July 2024
Other sources
When a network error occurred during page load, the prior content could have remained in view with a blank URL bar. This could have been used to obfuscate a spoofed web site.
— Mozilla
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/firefoxto a version that resolves this vulnerability.Fixed in 130.0.1-1 - Upgrade
Upgrade
Firefoxto a version that resolves this vulnerability.Fixed in 126 - Upgrade
Upgrade to a fixed release to a version that resolves this vulnerability.
Fixed in 126
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-4773?
CVE-2024-4773 is classified as a moderate severity vulnerability.
How do I fix CVE-2024-4773?
To fix CVE-2024-4773, update your Mozilla Firefox to version 126 or higher.
What types of software are affected by CVE-2024-4773?
CVE-2024-4773 affects Mozilla Firefox versions prior to 126 and specific Debian packaged versions.
What is the exploit method for CVE-2024-4773?
CVE-2024-4773 can be exploited when a network error occurs, allowing prior content to remain visible on a blank URL.
Is there a workaround for CVE-2024-4773?
Currently, there are no official workarounds for CVE-2024-4773 other than upgrading the affected software.