Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2023-25749

Опубликовано: 02 июн. 2023
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 4.3

Описание

Android applications with unpatched vulnerabilities can be launched from a browser using Intents, exposing users to these vulnerabilities. Firefox will now confirm with users that they want to launch an external application before doing so.
This bug only affects Firefox for Android. Other versions of Firefox are unaffected.. This vulnerability affects Firefox < 111.

РелизСтатусПримечание
bionic

not-affected

firefox on Android only
devel

not-affected

firefox on Android only
esm-infra/focal

DNE

focal

not-affected

firefox on Android only
jammy

not-affected

firefox on Android only
kinetic

not-affected

firefox on Android only
trusty

ignored

end of standard support
upstream

not-affected

debian: Android-specific
xenial

ignored

end of standard support

Показывать по

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
devel

not-affected

esm-infra/focal

DNE

focal

ignored

end of standard support, was needed
jammy

not-affected

kinetic

ignored

end of life, was needed
trusty

ignored

end of standard support
upstream

not-affected

firefox on Android only
xenial

ignored

end of standard support

Показывать по

EPSS

Процентиль: 33%
0.00126
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
nvd
больше 2 лет назад

Android applications with unpatched vulnerabilities can be launched from a browser using Intents, exposing users to these vulnerabilities. Firefox will now confirm with users that they want to launch an external application before doing so. <br>*This bug only affects Firefox for Android. Other versions of Firefox are unaffected.*. This vulnerability affects Firefox < 111.

CVSS3: 4.3
debian
больше 2 лет назад

Android applications with unpatched vulnerabilities can be launched fr ...

CVSS3: 4.3
github
больше 2 лет назад

Android applications with unpatched vulnerabilities can be launched from a browser using Intents, exposing users to these vulnerabilities. Firefox will now confirm with users that they want to launch an external application before doing so. <br>*This bug only affects Firefox for Android. Other versions of Firefox are unaffected.*. This vulnerability affects Firefox < 111.

CVSS3: 7.1
fstec
больше 2 лет назад

Уязвимость механизма Intent браузера Mozilla Firefox операционных систем Android, позволяющая нарушителю загружать произвольные файлы

suse-cvrf
больше 2 лет назад

Security update for MozillaFirefox

EPSS

Процентиль: 33%
0.00126
Низкий

4.3 Medium

CVSS3