Release Date: | 2023-07-13 |
A website could have obscured the fullscreen notification by using a URL with a scheme handled by an external program, such as a mailto URL. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 115, Firefox ESR < 102.13, and Thunderbird < 102.13.
See more information about CVE-2023-37207 from MITRE CVE dictionary and NIST NVD
NOTE: The following CVSS v3.0 metrics and score provided are preliminary and subject to review.
Platform | Errata | Release Date |
Oracle Linux version 7 (firefox) | ELSA-2023-4079 | 2023-07-21 |
Oracle Linux version 7 (thunderbird) | ELSA-2023-4062 | 2023-07-21 |
Oracle Linux version 8 (firefox) | ELSA-2023-4076 | 2023-07-17 |
Oracle Linux version 8 (thunderbird) | ELSA-2023-4063 | 2023-07-17 |
Oracle Linux version 9 (firefox) | ELSA-2023-4071 | 2023-07-17 |
Oracle Linux version 9 (thunderbird) | ELSA-2023-4064 | 2023-07-17 |
This page is generated automatically and has not been checked for errors or omissions. For clarification or corrections please contact the Oracle Linux ULN team