Vulnerability CVE-2023-5722: Information

Description

Using iterative requests an attacker was able to learn the size of an opaque response, as well as the contents of a server-supplied Vary header. This vulnerability affects Firefox < 119.

Severity: MEDIUM (5.3) Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Published: Oct. 25, 2023
Modified: Jan. 7, 2024
Error type identifier: CWE-203

Fixed packages

Package name
Branch
Fixed in version
Version from repository
Errata ID
Task #
State
firefoxsisyphus119.0-alt1125.0.2-alt1ALT-PU-2023-6639-1332815Fixed
firefoxsisyphus_riscv64120.0.1-alt0.port124.0.1-alt0.portALT-PU-2023-7796-1-Fixed
palemoonsisyphus32.5.0-alt1_1_git_30b19d3eb33.0.2-alt1ALT-PU-2023-7363-2334703Fixed
palemoonp1032.5.1-alt133.0.1-alt1ALT-PU-2023-7774-3334919Fixed

References to Advisories, Solutions, and Tools

    1. Configuration 1

      cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
      End excliding
      119.0