CVE Vulnerabilities

CVE-2023-25748

Published: Jun 02, 2023 | Modified: Jan 09, 2025
CVSS 3.x
4.3
MEDIUM
Source:
NVD
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N
CVSS 2.x
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

By displaying a prompt with a long description, the fullscreen notification could have been hidden, resulting in potential user confusion or spoofing attacks. This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 111.

Affected Software

NameVendorStart VersionEnd Version
FirefoxMozilla*111.0 (excluding)
FirefoxUbuntutrusty*
FirefoxUbuntuxenial*
ThunderbirdUbuntubionic*
ThunderbirdUbuntufocal*
ThunderbirdUbuntukinetic*
ThunderbirdUbuntutrusty*
ThunderbirdUbuntuxenial*

References