Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2024-1550
HistoryFeb 20, 2024 - 2:15 p.m.

CVE-2024-1550

2024-02-2014:15:08
Alpine Linux Development Team
security.alpinelinux.org
13
malicious website
vulnerability
firefox
thunderbird
user confusion
unexpected mouse re-positioning
permissions
cve-2024-1550
unix

7.5 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

10.5%

A malicious website could have used a combination of exiting fullscreen mode and requestPointerLock to cause the user’s mouse to be re-positioned unexpectedly, which could have led to user confusion and inadvertently granting permissions they did not intend to grant. This vulnerability affects Firefox < 123, Firefox ESR < 115.8, and Thunderbird < 115.8.

OSVersionArchitecturePackageVersionFilename
Alpine3.18-communitynoarchfirefox-esr< 115.8.0-r0UNKNOWN
Alpine3.19-communitynoarchfirefox-esr< 115.8.0-r0UNKNOWN