Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2017-5456

Опубликовано: 11 июн. 2018
Источник: debian

Описание

A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an IPC message. This allows for read and write access to the local file system. This vulnerability affects Firefox ESR < 52.1 and Firefox < 53.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed52.0.1-1package

Связанные уязвимости

CVSS3: 9.8
ubuntu
больше 7 лет назад

A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an IPC message. This allows for read and write access to the local file system. This vulnerability affects Firefox ESR < 52.1 and Firefox < 53.

CVSS3: 9.8
redhat
больше 8 лет назад

A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an IPC message. This allows for read and write access to the local file system. This vulnerability affects Firefox ESR < 52.1 and Firefox < 53.

CVSS3: 9.8
nvd
больше 7 лет назад

A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an IPC message. This allows for read and write access to the local file system. This vulnerability affects Firefox ESR < 52.1 and Firefox < 53.

CVSS3: 9.8
github
больше 3 лет назад

A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an IPC message. This allows for read and write access to the local file system. This vulnerability affects Firefox ESR < 52.1 and Firefox < 53.

oracle-oval
больше 8 лет назад

ELSA-2017-1106: firefox security update (CRITICAL)