Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2022-22753

Опубликовано: 22 дек. 2022
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.1

Описание

A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an arbitrary directory. This could have been used to escalate to SYSTEM access.
This bug only affects Firefox on Windows. Other operating systems are unaffected.. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

РелизСтатусПримечание
bionic

not-affected

Windows only
devel

not-affected

Windows only
esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

not-affected

Windows only
impish

not-affected

Windows only
jammy

not-affected

Windows only
trusty

ignored

end of standard support
trusty/esm

DNE

upstream

released

97

Показывать по

РелизСтатусПримечание
bionic

not-affected

Windows only
devel

not-affected

Windows only
esm-infra-legacy/trusty

DNE

esm-infra/focal

DNE

focal

not-affected

Windows only
impish

not-affected

Windows only
jammy

not-affected

Windows only
trusty

ignored

end of standard support
trusty/esm

DNE

upstream

needs-triage

Показывать по

EPSS

Процентиль: 36%
0.00153
Низкий

7.1 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
redhat
почти 4 года назад

A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an arbitrary directory. This could have been used to escalate to SYSTEM access.<br>*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

CVSS3: 7.1
nvd
почти 3 года назад

A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an arbitrary directory. This could have been used to escalate to SYSTEM access.<br>*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

CVSS3: 7.1
debian
почти 3 года назад

A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) S ...

CVSS3: 7.1
github
почти 3 года назад

A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an arbitrary directory. This could have been used to escalate to SYSTEM access.<br>*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

CVSS3: 8.8
fstec
почти 4 года назад

Уязвимость службы Maintenance (Updater) Service браузера Mozilla Firefox, позволяющая нарушителю повысить свои привилегии

EPSS

Процентиль: 36%
0.00153
Низкий

7.1 High

CVSS3