Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2022-42931

Опубликовано: 22 дек. 2022
Источник: debian

Описание

Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk. Instead, the username (not password) was saved by the Form Manager to an unencrypted file on disk. This vulnerability affects Firefox < 106.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
firefoxfixed106.0-1package

Примечания

  • https://www.mozilla.org/en-US/security/advisories/mfsa2022-44/#CVE-2022-42931

Связанные уязвимости

CVSS3: 3.3
ubuntu
почти 3 года назад

Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk. Instead, the username (not password) was saved by the Form Manager to an unencrypted file on disk. This vulnerability affects Firefox < 106.

CVSS3: 3.3
nvd
почти 3 года назад

Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk. Instead, the username (not password) was saved by the Form Manager to an unencrypted file on disk. This vulnerability affects Firefox < 106.

CVSS3: 3.3
github
почти 3 года назад

Logins saved by Firefox should be managed by the Password Manager component which uses encryption to save files on-disk. Instead, the username (not password) was saved by the Form Manager to an unencrypted file on disk. This vulnerability affects Firefox < 106.

CVSS3: 7.5
fstec
около 3 лет назад

Уязвимость компонента Form Manager браузера Firefox, позволяющая нарушителю раскрыть защищаемую информацию