It was possible for certain browser prompts and dialogs to be activated or dismissed unintentionally by the user due to an incorrect timestamp used to prevent input after page load. This vulnerability affects Firefox < 122, Firefox ESR < 115.7, and Thunderbird < 115.7.
Metrics
Affected Vendors & Products
Advisories
| Source | ID | Title |
|---|---|---|
Debian DLA |
DLA-3720-1 | thunderbird security update |
Debian DLA |
DLA-3727-1 | firefox-esr security update |
Debian DSA |
DSA-5605-1 | thunderbird security update |
Debian DSA |
DSA-5606-1 | firefox-esr security update |
Ubuntu USN |
USN-6610-1 | Firefox vulnerabilities |
Ubuntu USN |
USN-6669-1 | Thunderbird vulnerabilities |
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Fri, 30 May 2025 15:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2025-05-30T14:19:26.249Z
Reserved: 2024-01-19T16:52:24.593Z
Link: CVE-2024-0742
Updated: 2024-08-01T18:18:17.931Z
Status : Modified
Published: 2024-01-23T14:15:38.230
Modified: 2025-05-30T15:15:29.757
Link: CVE-2024-0742
OpenCVE Enrichment
No data.
Debian DLA
Debian DSA
Ubuntu USN