In multiple cases browser prompts could have been obscured by popups controlled by content. These could have led to potential user confusion and spoofing attacks. This vulnerability affects Firefox < 113, Firefox ESR < 102.11, and Thunderbird < 102.11.
Link | Tags |
---|---|
https://bugzilla.mozilla.org/show_bug.cgi?id=1753339 | permissions required issue tracking vendor advisory |
https://bugzilla.mozilla.org/show_bug.cgi?id=1753341 | issue tracking vendor advisory |
https://security.gentoo.org/glsa/202312-03 | vendor advisory |
https://security.gentoo.org/glsa/202401-10 | vendor advisory |
https://www.mozilla.org/security/advisories/mfsa2023-16/ | vendor advisory |
https://www.mozilla.org/security/advisories/mfsa2023-17/ | vendor advisory |
https://www.mozilla.org/security/advisories/mfsa2023-18/ | vendor advisory |