CVE-2023-29533
A website could have obscured the fullscreen notification by using a combination of <code>window.open</code>, fullscreen requests, <code>window.name</code> assignments, and <code>setInterval</code> calls. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.
Affected Software
Event History
Frequently Asked Questions
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2023-29533.
What is the severity level of CVE-2023-29533?
The severity level of CVE-2023-29533 is high.
Which software is affected by CVE-2023-29533?
CVE-2023-29533 affects Mozilla Thunderbird, Firefox, Firefox ESR, and Google Android.
How can CVE-2023-29533 be exploited?
CVE-2023-29533 can be exploited by obscuring the fullscreen notification using window.open, fullscreen requests, window.name assignments, and setInterval calls.
Where can I find more information about CVE-2023-29533?
You can find more information about CVE-2023-29533 on the Mozilla Bugzilla and Mozilla Security Advisories websites.