PT-2023-8081 · Mozilla+4 · Firefox+4

Edward Prior

+1

·

Published

2023-11-21

·

Updated

2025-03-21

·

CVE-2023-6872

CVSS v2.0

7.8

High

VectorAV:N/AC:L/Au:N/C:C/I:N/A:N
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 121
Description The issue is related to the disclosure of information through registration files, potentially exposing browsing habits of users running in a private tab. This could allow a remote attacker to reveal protected information. The estimated number of potentially affected devices worldwide is not specified.
Recommendations For versions prior to 121, update to version 121 or later to resolve the issue. As a temporary workaround, consider restricting access to system logs to minimize the risk of exploitation. Avoid using private tabs until the issue is resolved.

Exploit

Fix

Insertion into Log File

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2023-8231
ALT-PU-2024-13898
ALT-PU-2024-15839
ALT-PU-2024-15840
BDU:2024-00059
CVE-2023-6872
OESA-2025-1322
OESA-2025-1323
OPENSUSE-SU-2024:13531-1
OPENSUSE-SU-2024:14572-1
USN-6562-1
USN-6562-2

Affected Products

Alt Linux
Astra Linux
Linuxmint
Firefox
Ubuntu