Уязвимость подмены расширения файла в Mozilla Firefox и Thunderbird, способная привести к выполнению вредоносного кода
Описание
Злоумышленник способен изменить имя файла с длинным именем, чтобы удалить его корректное расширение, оставив вместо него вредоносное расширение. Это может привести к путанице у пользователя и выполнению вредоносного кода.
Затронутые версии ПО
- Firefox версий ниже 108
- Thunderbird версий ниже 102.6.1
- Thunderbird версии 102.6
- Firefox ESR версий ниже 102.6
Тип уязвимости
- Подмена расширения файла
- Выполнение вредоносного кода
Примечание
Эта проблема изначально включена в рекомендации для Thunderbird версии 102.6, но исправление (специфичное для Thunderbird) было пропущено, поэтому проблема фактически решена в Thunderbird версии 102.6.1.
Ссылки
- Issue TrackingPermissions Required
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Issue TrackingPermissions Required
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
- Vendor Advisory
Уязвимые конфигурации
Одно из
EPSS
8.8 High
CVSS3
Дефекты
Связанные уязвимости
A file with a long filename could have had its filename truncated to remove the valid extension, leaving a malicious extension in its place. This could potentially led to user confusion and the execution of malicious code.<br/>*Note*: This issue was originally included in the advisories for Thunderbird 102.6, but a patch (specific to Thunderbird) was omitted, resulting in it actually being fixed in Thunderbird 102.6.1. This vulnerability affects Firefox < 108, Thunderbird < 102.6.1, Thunderbird < 102.6, and Firefox ESR < 102.6.
A file with a long filename could have had its filename truncated to remove the valid extension, leaving a malicious extension in its place. This could potentially led to user confusion and the execution of malicious code.<br/>*Note*: This issue was originally included in the advisories for Thunderbird 102.6, but a patch (specific to Thunderbird) was omitted, resulting in it actually being fixed in Thunderbird 102.6.1. This vulnerability affects Firefox < 108, Thunderbird < 102.6.1, Thunderbird < 102.6, and Firefox ESR < 102.6.
A file with a long filename could have had its filename truncated to r ...
A file with a long filename could have had its filename truncated to remove the valid extension, leaving a malicious extension in its place. This could potentially led to user confusion and the execution of malicious code.<br/>*Note*: This issue was originally included in the advisories for Thunderbird 102.6, but a patch (specific to Thunderbird) was omitted, resulting in it actually being fixed in Thunderbird 102.6.1. This vulnerability affects Firefox < 108, Thunderbird < 102.6.1, Thunderbird < 102.6, and Firefox ESR < 102.6.
EPSS
8.8 High
CVSS3