MFSA2017-22 Firefox: Security vulnerabilities fixed in Firefox ESR 52.4 (CVE-2017-7814)
|4||(AV:L/AC:M/Au:N/C:P/I:P/A:P)||September 27, 2017||September 28, 2017||December 04, 2017|
File downloads encoded with blob: and data: URL elements bypassed normal file download checks though the Phishing and Malware Protection feature and its block lists of suspicious sites and files. This would allow malicious sites to lure users into downloading executables that would otherwise be detected as suspicious.
Free Nexpose Download
Discover, prioritize, and remediate security risks today!
- Alpine Linux: CVE-2017-7814: firefox-esr Multiple vulnerabilities
- Oracle Solaris 11: CVE-2017-7814: Vulnerability in Firefox, Thunderbird
- MFSA2017-23 Thunderbird: Security vulnerabilities fixed in Thunderbird 52.4 (CVE-2017-7814)
- Gentoo Linux: CVE-2017-7814: Mozilla Firefox: Multiple vulnerabilities