Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2023-17325
HistoryJul 28, 2022 - 12:00 a.m.

Mozilla Firefox Resource Management Error Vulnerability (CNVD-2023-17325)

2022-07-2800:00:00
China National Vulnerability Database
www.cnvd.org.cn
107
mozilla firefox
resource management
vulnerability
open source
web browser
cache preload
subresource integrity
metadata
exploit
cnvd-2023-17325

0.001 Low

EPSS

Percentile

32.4%

Mozilla Firefox is an open source Web browser from the Mozilla Foundation. versions prior to Mozilla Firefox 103 are vulnerable to a resource management error that stems from a cache preload error. When loading a script with subresource integrity, an attacker could exploit the vulnerability to trigger reuse of previously cached entries with incorrect, different integrity metadata.

CPENameOperatorVersion
mozilla firefoxlt103.0