Vulnerability   
Search   
    Search 324607 CVE descriptions
and 146377 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

Test ID:1.3.6.1.4.1.25623.1.0.845315
Category:Ubuntu Local Security Checks
Title:Ubuntu: Security Advisory (USN-5370-1)
Summary:The remote host is missing an update for the 'firefox' package(s) announced via the USN-5370-1 advisory.
Description:Summary:
The remote host is missing an update for the 'firefox' package(s) announced via the USN-5370-1 advisory.

Vulnerability Insight:
Multiple security issues were discovered in Firefox. If a user were
tricked into opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service, execute script
unexpectedly, obtain sensitive information, conduct spoofing attacks,
or execute arbitrary code. (CVE-2022-1097, CVE-2022-24713, CVE-2022-28281,
CVE-2022-28282, CVE-2022-28284, CVE-2022-28285, CVE-2022-28286,
CVE-2022-28288, CVE-2022-28289)

A security issue was discovered with the sourceMapURL feature of devtools.
An attacker could potentially exploit this to include local files that
should have been inaccessible. (CVE-2022-28283)

It was discovered that selecting text caused Firefox to crash in some
circumstances. An attacker could potentially exploit this to cause a
denial of service. (CVE-2022-28287)

Affected Software/OS:
'firefox' package(s) on Ubuntu 18.04, Ubuntu 20.04, Ubuntu 21.10.

Solution:
Please install the updated package(s).

CVSS Score:
5.0

CVSS Vector:
AV:N/AC:L/Au:N/C:N/I:N/A:P

Cross-Ref: Common Vulnerability Exposure (CVE) ID: CVE-2022-1097
https://bugzilla.mozilla.org/show_bug.cgi?id=1745667
https://www.mozilla.org/security/advisories/mfsa2022-13/
https://www.mozilla.org/security/advisories/mfsa2022-14/
https://www.mozilla.org/security/advisories/mfsa2022-15/
Common Vulnerability Exposure (CVE) ID: CVE-2022-24713
https://github.com/rust-lang/regex/security/advisories/GHSA-m5pq-gvj9-9vr8
Debian Security Information: DSA-5113 (Google Search)
https://www.debian.org/security/2022/dsa-5113
Debian Security Information: DSA-5118 (Google Search)
https://www.debian.org/security/2022/dsa-5118
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/JANLZ3JXWJR7FSHE57K66UIZUIJZI67T/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PDOWTHNVGBOP2HN27PUFIGRYNSNDTYRJ/
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/O3YB7CURSG64CIPCDPNMGPE4UU24AB6H/
https://security.gentoo.org/glsa/202208-08
https://security.gentoo.org/glsa/202208-14
https://github.com/rust-lang/regex/commit/ae70b41d4f46641dbc45c7a4f87954aea356283e
https://groups.google.com/g/rustlang-security-announcements/c/NcNNL1Jq7Yw
https://lists.debian.org/debian-lts-announce/2022/04/msg00003.html
https://lists.debian.org/debian-lts-announce/2022/04/msg00009.html
Common Vulnerability Exposure (CVE) ID: CVE-2022-28281
https://bugzilla.mozilla.org/show_bug.cgi?id=1755621
Common Vulnerability Exposure (CVE) ID: CVE-2022-28282
https://bugzilla.mozilla.org/show_bug.cgi?id=1751609
Common Vulnerability Exposure (CVE) ID: CVE-2022-28283
https://bugzilla.mozilla.org/show_bug.cgi?id=1754066
Common Vulnerability Exposure (CVE) ID: CVE-2022-28284
https://bugzilla.mozilla.org/show_bug.cgi?id=1754522
Common Vulnerability Exposure (CVE) ID: CVE-2022-28285
https://bugzilla.mozilla.org/show_bug.cgi?id=1756957
Common Vulnerability Exposure (CVE) ID: CVE-2022-28286
https://bugzilla.mozilla.org/show_bug.cgi?id=1735265
Common Vulnerability Exposure (CVE) ID: CVE-2022-28287
https://bugzilla.mozilla.org/show_bug.cgi?id=1741515
Common Vulnerability Exposure (CVE) ID: CVE-2022-28288
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1746415%2C1746495%2C1746500%2C1747282%2C1748759%2C1749056%2C1749786%2C1751679%2C1752120%2C1756010%2C1756017%2C1757213%2C1757258%2C1757427
Common Vulnerability Exposure (CVE) ID: CVE-2022-28289
https://bugzilla.mozilla.org/buglist.cgi?bug_id=1663508%2C1744525%2C1753508%2C1757476%2C1757805%2C1758549%2C1758776
CopyrightCopyright (C) 2022 Greenbone AG

This is only one of 146377 vulnerability tests in our test suite. Find out more about running a complete security audit.

To run a free test of this vulnerability against your system, register below.




© 1998-2025 E-Soft Inc. All rights reserved.