Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-5427

Опубликовано: 11 июн. 2018
Источник: debian
EPSS Низкий

Описание

A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If a malicious user with local access puts chrome.manifest and other referenced files in this directory, they will be loaded and activated during startup. This could result in malicious software being added without consent or modification of referenced installed files. This vulnerability affects Firefox < 52.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed52.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2017-05/#CVE-2017-5427

EPSS

Процентиль: 27%
0.00098
Низкий

Связанные уязвимости

CVSS3: 5.5
ubuntu
больше 7 лет назад

A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If a malicious user with local access puts chrome.manifest and other referenced files in this directory, they will be loaded and activated during startup. This could result in malicious software being added without consent or modification of referenced installed files. This vulnerability affects Firefox < 52.

CVSS3: 5.5
nvd
больше 7 лет назад

A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If a malicious user with local access puts chrome.manifest and other referenced files in this directory, they will be loaded and activated during startup. This could result in malicious software being added without consent or modification of referenced installed files. This vulnerability affects Firefox < 52.

CVSS3: 5.5
github
больше 3 лет назад

A non-existent chrome.manifest file will attempt to be loaded during startup from the primary installation directory. If a malicious user with local access puts chrome.manifest and other referenced files in this directory, they will be loaded and activated during startup. This could result in malicious software being added without consent or modification of referenced installed files. This vulnerability affects Firefox < 52.

suse-cvrf
почти 9 лет назад

Security update for MozillaFirefox, mozilla-nss

EPSS

Процентиль: 27%
0.00098
Низкий