Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.821163
Category:General
Title:Mozilla Firefox Security Advisory (MFSA2022-16) - Windows
Summary:Mozilla Firefox is prone to multiple; vulnerabilities.
Description:Summary:
Mozilla Firefox is prone to multiple
vulnerabilities.

Vulnerability Insight:
Multiple flaws exist due to,

- Fullscreen notification bypass using popups.

- Bypassing permission prompt in nested browsing contexts.

- Leaking browser history with CSS variables.

- iframe Sandbox bypass.

- Reader mode bypassed SameSite cookies.

- Firefox for Android forgot HTTP Strict Transport Security settings.

- Leaking cross-origin redirect through the Performance API.

- Memory safety bugs.

Vulnerability Impact:
Successful exploitation will allow
attackers to run arbitrary code, bypass security restrictions, conduct spoofing
and cause a denial of service on affected system.

Affected Software/OS:
Mozilla Firefox version before
100 on Windows.

Solution:
Upgrade to Mozilla Firefox version 100
or later, Please see the references for more information.

CVSS Score:
10.0

CVSS Vector:
AV:N/AC:L/Au:N/C:C/I:C/A:C

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-29914
https://bugzilla.mozilla.org/show_bug.cgi?id=1746448
https://www.mozilla.org/security/advisories/mfsa2022-16/
https://www.mozilla.org/security/advisories/mfsa2022-17/
https://www.mozilla.org/security/advisories/mfsa2022-18/
Common Vulnerability Exposure (CVE) ID: CVE-2022-29909
https://bugzilla.mozilla.org/show_bug.cgi?id=1755081
Common Vulnerability Exposure (CVE) ID: CVE-2022-29916
https://bugzilla.mozilla.org/show_bug.cgi?id=1760674
Common Vulnerability Exposure (CVE) ID: CVE-2022-29911
https://bugzilla.mozilla.org/show_bug.cgi?id=1761981
Common Vulnerability Exposure (CVE) ID: CVE-2022-29912
https://bugzilla.mozilla.org/show_bug.cgi?id=1692655
Common Vulnerability Exposure (CVE) ID: CVE-2022-29915
https://bugzilla.mozilla.org/show_bug.cgi?id=1751678
Common Vulnerability Exposure (CVE) ID: CVE-2022-29917
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1684739%2C1706441%2C1753298%2C1762614%2C1762620%2C1764778
Common Vulnerability Exposure (CVE) ID: CVE-2022-29918
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1744043%2C1747178%2C1753535%2C1754017%2C1755847%2C1756172%2C1757477%2C1758223%2C1760160%2C1761481%2C1761771
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 145615 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.