Related Vulnerabilities: CVE-2022-34479  

A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue of a malicious website that creates a popup that could have resized the popup to overlay the address bar with its own content, resulting in potential user confusion or spoofing attacks.

Description

A flaw was found in Mozilla. The Mozilla Foundation Security Advisory describes the issue of a malicious website that creates a popup that could have resized the popup to overlay the address bar with its own content, resulting in potential user confusion or spoofing attacks.

Statement

This bug only affects Firefox and Thunderbird for Linux. Other operating systems are unaffected.

This bug only affects Firefox and Thunderbird for Linux. Other operating systems are unaffected.

Additional Information

  • Bugzilla 2102161: CVE-2022-34479 Mozilla: A popup window could be resized in a way to overlay the address bar with web content
  • CWE-1021: Improper Restriction of Rendered UI Layers or Frames
  • FAQ: Frequently asked questions about CVE-2022-34479