CVE-2024-5697: Medium severity Mozilla Firefox vulnerability
A website was able to detect when a user took a screenshot of a page using the built-in Screenshot functionality in Firefox.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
debian/firefoxto a version that resolves this vulnerability.Fixed in 131.0.3-1 - Upgrade
Upgrade
Firefoxto a version that resolves this vulnerability.Fixed in 127 - Upgrade
Upgrade
firefoxto a version that resolves this vulnerability.Fixed in 127
Event History
Peer vulnerabilities
Found alongside the following vulnerabilities.
Frequently Asked Questions
What is the severity of CVE-2024-5697?
CVE-2024-5697 is classified as a moderate-severity vulnerability.
How do I fix CVE-2024-5697?
To fix CVE-2024-5697, update Firefox to version 127 or later.
Which versions of Firefox are affected by CVE-2024-5697?
Firefox versions prior to 127 are affected by CVE-2024-5697.
What does CVE-2024-5697 allow a website to do?
CVE-2024-5697 allows a website to detect when a user takes a screenshot using Firefox's built-in functionality.
Is there a specific package affected by CVE-2024-5697 on Debian?
Yes, the Debian package 'firefox' is affected in versions prior to 131.0.3-1.