Kaspersky ID:
KLA12546
Detekováno:
05/31/2022
Aktualizováno:
01/28/2026

Popis

Multiple vulnerabilities were found in Mozilla Firefox ESR. Malicious users can exploit these vulnerabilities to obtain sensitive information, bypass security restrictions, cause denial of service, spoof user interface, execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. Denial of service vulnerability can be exploited to cause denial of service.
  2. Security vulnerability can be exploited to bypass security restrictions.
  3. Heap buffer overflow vulnerability in WebGL can be exploited to cause denial of service.
  4. Denial of service vulnerability in WASM on arm64 can be exploited to cause denial of service.
  5. Spoof user interface vulnerability in fullscreen mode can be exploited to spoof user interface.
  6. Obtain sensitive information vulnerability in WebAuthn token can be exploited to obtain sensitive information.
  7. Denial of service vulnerability can be exploited to cause denial of service or execute arbitrary code.

Oficiální doporučení

Vykořisťování

Public exploits exist for this vulnerability.

Související produkty

seznam CVE

  • CVE-2022-31736
    critical
  • CVE-2022-31747
    critical
  • CVE-2022-31740
    critical
  • CVE-2022-31737
    critical
  • CVE-2022-31741
    critical
  • CVE-2022-31738
    high
  • CVE-2022-31742
    high
  • CVE-2022-31739
    critical

Zobrazit více

Zjistěte statistiky zranitelností šířících se ve vaší oblasti statistics.securelist.com

Našli jste v popisu této chyby zabezpečení nepřesnost? Dej nám vědět!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Zjistěte více
Kaspersky Premium
Zjistěte více
Do you want to save your changes?
Your message has been sent successfully.