Mozilla Firefox prior to 47.0 and Firefox ESR 45.x prior to 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote malicious users to cause a denial of service (UI outage), or conduct clickjacking or spoofing attacks, via a crafted web site.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
canonical ubuntu linux 16.04 |
||
canonical ubuntu linux 15.10 |
||
canonical ubuntu linux 14.04 |
||
canonical ubuntu linux 12.04 |
||
mozilla firefox esr 45.1.0 |
||
mozilla firefox esr 45.1.1 |
||
debian debian linux 8.0 |
||
opensuse leap 42.1 |
||
opensuse opensuse 13.2 |
||
opensuse opensuse 13.1 |
||
mozilla firefox |