VDB
CVE-2023-32208
CVE-2023-32208
PUBLISHED
In Mozilla Firefox und Mozilla Firefox ESR existieren mehrere Schwachstellen. Die Fehler bestehen aufgrund mehrerer fehlerhafter Verarbeitungen von Benutzerdaten, eines Clickjacking-Angriffs, Lecks in der Skriptbasis-URL in Service Workern und weil Dokumente fälschlicherweise eine Reihenfolge der Hauptobjekte annehmen. Ein entfernter, anonymer Angreifer kann diese Schwachstellen ausnutzen, um Informationen falsch darzustellen, Sicherheitsmaßnahmen zu umgehen und vertrauliche Informationen offenzulegen.
EPSS 0.22% · 44.2th percentile
Risk Scores
EPSS Score
0.22%
44.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Xerox | Xerox FreeFlow Print Server v2 | |
| Red Hat | Red Hat Enterprise Linux | |
| Xerox | Xerox FreeFlow Print Server v9 | |
| Gentoo | Gentoo Linux | |
| Ubuntu | Ubuntu Linux | |
| Xerox | Xerox FreeFlow Print Server v7 for Solaris | |
| Oracle | Oracle Linux | |
| Fedora | Fedora Linux | |
| SUSE | SUSE Linux | |
| Debian | Debian Linux | |
| Amazon | Amazon Linux 2 |
Exploit Intelligence
Timeline
- May 9, 2023 CVE Published
- Jun 20, 2023 EPSS Score
- Jul 25, 2023 EPSS Score
- Aug 30, 2023 EPSS Score
- Oct 4, 2023 EPSS Score
- Nov 8, 2023 EPSS Score
- Dec 14, 2023 EPSS Score
- Jan 18, 2024 EPSS Score
- Feb 22, 2024 EPSS Score
- Mar 29, 2024 EPSS Score
- May 3, 2024 EPSS Score
- Jun 7, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-1172.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-1172 advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2023-16/ advisory
- https://www.mozilla.org/en-US/security/advisories/mfsa2023-17/ advisory
- https://www.debian.org/security/2023/dsa-5400 advisory
- https://lists.debian.org/debian-lts-announce/2023/05/msg00009.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-May/014858.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-May/014859.html advisory
- https://lists.suse.com/pipermail/sle-security-updates/2023-May/014861.html advisory
- https://ubuntu.com/security/notices/USN-6074-1 advisory
- https://ubuntu.com/security/notices/USN-6074-2 advisory
- https://access.redhat.com/errata/RHSA-2023:3137 advisory
- https://access.redhat.com/errata/RHSA-2023:3138 advisory
- https://access.redhat.com/errata/RHSA-2023:3139 advisory
- https://access.redhat.com/errata/RHSA-2023:3140 advisory
- https://access.redhat.com/errata/RHSA-2023:3141 advisory
- https://access.redhat.com/errata/RHSA-2023:3142 advisory
- https://access.redhat.com/errata/RHSA-2023:3143 advisory
- https://oss.oracle.com/pipermail/el-errata/2023-May/013975.html advisory
- https://access.redhat.com/errata/RHSA-2023:3220 advisory
…and 13 more