Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2021-43540

Опубликовано: 08 дек. 2021
Источник: debian
EPSS Низкий

Описание

WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed95.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2021-52/#CVE-2021-43540

EPSS

Процентиль: 58%
0.00364
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
больше 3 лет назад

WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

CVSS3: 6.5
nvd
больше 3 лет назад

WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

CVSS3: 6.5
github
больше 3 лет назад

WebExtensions with the correct permissions were able to create and install ServiceWorkers for third-party websites that would not have been uninstalled with the extension. This vulnerability affects Firefox < 95.

EPSS

Процентиль: 58%
0.00364
Низкий