adjust bug 1730120 description based on smaug's feedback

This commit is contained in:
Frederik Braun 2021-12-03 20:52:46 +01:00
Родитель 049997c2f5
Коммит 100320f37c
3 изменённых файлов: 6 добавлений и 6 удалений

Просмотреть файл

@ -6,11 +6,11 @@ fixed_in:
title: Security Vulnerabilities fixed in Firefox 95
advisories:
CVE-2021-43536:
title: Redirect URL leakage when redirecting while executing asynchronous function
title: URL leakage when navigating while executing asynchronous function
impact: high
reporter: Sunwoo Kim and Youngmin Kim of SNU CompSec Lab
description: |
Under certain circumstances, asynchronous functions could have caused a redirect to fail but expose the redirect target location.
Under certain circumstances, asynchronous functions could have caused a navigation to fail but expose the target URL.
bugs:
- url: 1730120
CVE-2021-43537:

Просмотреть файл

@ -6,11 +6,11 @@ fixed_in:
title: Security Vulnerabilities fixed in Firefox ESR 91.4.0
advisories:
CVE-2021-43536:
title: Redirect URL leakage when redirecting while executing asynchronous function
title: URL leakage when navigating while executing asynchronous function
impact: high
reporter: Sunwoo Kim and Youngmin Kim of SNU CompSec Lab
description: |
Under certain circumstances, asynchronous functions could have caused a redirect to fail but expose the redirect target location.
Under certain circumstances, asynchronous functions could have caused a navigation to fail but expose the target URL.
bugs:
- url: 1730120
CVE-2021-43537:

Просмотреть файл

@ -8,11 +8,11 @@ description: |
*In general, these flaws cannot be exploited through email in the Thunderbird product because scripting is disabled when reading mail, but are potentially risks in browser or browser-like contexts.*
advisories:
CVE-2021-43536:
title: Redirect URL leakage when redirecting while executing asynchronous function
title: URL leakage when navigating while executing asynchronous function
impact: high
reporter: Sunwoo Kim and Youngmin Kim of SNU CompSec Lab
description: |
Under certain circumstances, asynchronous functions could have caused a redirect to fail but expose the redirect target location.
Under certain circumstances, asynchronous functions could have caused a navigation to fail but expose the target URL.
bugs:
- url: 1730120
CVE-2021-43537: