Kaspersky ID:
KLA12546
Bulunma tarihi:
05/31/2022
Yüklendi:
01/28/2026

Açıklama

Multiple vulnerabilities were found in Mozilla Firefox ESR. Malicious users can exploit these vulnerabilities to obtain sensitive information, bypass security restrictions, cause denial of service, spoof user interface, execute arbitrary code.

Below is a complete list of vulnerabilities:

  1. Denial of service vulnerability can be exploited to cause denial of service.
  2. Security vulnerability can be exploited to bypass security restrictions.
  3. Heap buffer overflow vulnerability in WebGL can be exploited to cause denial of service.
  4. Denial of service vulnerability in WASM on arm64 can be exploited to cause denial of service.
  5. Spoof user interface vulnerability in fullscreen mode can be exploited to spoof user interface.
  6. Obtain sensitive information vulnerability in WebAuthn token can be exploited to obtain sensitive information.
  7. Denial of service vulnerability can be exploited to cause denial of service or execute arbitrary code.

Orijinal öneriler

Kötüye kullanma

Public exploits exist for this vulnerability.

İlgili ürünler

CVE Listesi

  • CVE-2022-31736
    critical
  • CVE-2022-31747
    critical
  • CVE-2022-31740
    critical
  • CVE-2022-31737
    critical
  • CVE-2022-31741
    critical
  • CVE-2022-31738
    high
  • CVE-2022-31742
    high
  • CVE-2022-31739
    critical

Daha fazlasını okuyun

Bölgenizde yayılan güvenlik açıklarının istatistiklerini öğrenin statistics.securelist.com

Bu güvenlik açığının açıklamasında bir tutarsızlık mı tespit ettiniz? Bize bildirin!
Kaspersky IT Security Calculator
Daha fazla bilgi edin
Yeni Kaspersky!
Dijital hayatınız güçlü korumayı hak ediyor!
Daha fazla bilgi edin
Do you want to save your changes?
Your message has been sent successfully.