CVE-2017-5451

Source
Severity Medium
Remote Yes
Type Content spoofing
Description
A security issue has been found in Firefox < 53, allowing to spoof the addressbar through the user interaction on the addressbar and the onblur event. The event could be used by script to affect text display to make the loaded site appear to be different from the one actually loaded within the addressbar.
Group Package Affected Fixed Severity Status Ticket
AVG-249 firefox 52.0.2-1 53.0-1 Critical Fixed
Date Advisory Group Package Severity Description
21 Apr 2017 ASA-201704-6 AVG-249 firefox Critical multiple issues
References
https://www.mozilla.org/en-US/security/advisories/mfsa2017-10/#CVE-2017-5451
https://bugzilla.mozilla.org/show_bug.cgi?id=1273537