Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2025-3033

Опубликовано: 01 апр. 2025
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 7.7

Описание

After selecting a malicious Windows .url shortcut from the local filesystem, an unexpected file could be uploaded. This bug only affects Firefox on Windows. Other operating systems are unaffected.. This vulnerability was fixed in Firefox 137 and Thunderbird 137.

РелизСтатусПримечание
devel

not-affected

code not present
esm-infra/focal

DNE

focal

not-affected

windows only
jammy

not-affected

code not present
noble

not-affected

code not present
oracular

not-affected

code not present
plucky

not-affected

code not present
upstream

not-affected

debian: Only affects Firefox on Windows

Показывать по

РелизСтатусПримечание
devel

not-affected

code not present
esm-infra/focal

DNE

focal

not-affected

windows only
jammy

not-affected

windows only
noble

not-affected

code not present
oracular

not-affected

code not present
plucky

not-affected

code not present
upstream

needs-triage

Показывать по

EPSS

Процентиль: 7%
0.0017
Низкий

7.7 High

CVSS3

Связанные уязвимости

CVSS3: 7.7
nvd
больше 1 года назад

After selecting a malicious Windows `.url` shortcut from the local filesystem, an unexpected file could be uploaded. *This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability was fixed in Firefox 137 and Thunderbird 137.

CVSS3: 7.7
debian
больше 1 года назад

After selecting a malicious Windows `.url` shortcut from the local fil ...

CVSS3: 7.7
github
больше 1 года назад

After selecting a malicious Windows `.url` shortcut from the local filesystem, an unexpected file could be uploaded. *This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 137 and Thunderbird < 137.

CVSS3: 8.1
fstec
больше 1 года назад

Уязвимость браузера Mozilla Firefox и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 7%
0.0017
Низкий

7.7 High

CVSS3