Rapid7 Vulnerability & Exploit Database

MFSA2022-25 Firefox: Security Vulnerabilities fixed in Firefox ESR 91.11 (CVE-2022-34479)

Back to Search

MFSA2022-25 Firefox: Security Vulnerabilities fixed in Firefox ESR 91.11 (CVE-2022-34479)

Severity
4
CVSS
(AV:L/AC:M/Au:N/C:P/I:P/A:P)
Published
06/28/2022
Created
07/16/2022
Added
06/29/2022
Modified
06/29/2022

Description

A malicious website that could create a popup could have resized the popup to overlay the address bar with its own content, resulting in potential user confusion or spoofing attacks. This bug only affects Firefox for Linux. Other operating systems are unaffected.

Solution(s)

  • mozilla-firefox-esr-upgrade-91_11

With Rapid7 live dashboards, I have a clear view of all the assets on my network, which ones can be exploited, and what I need to do in order to reduce the risk in my environment in real-time. No other tool gives us that kind of value and insight.

– Scott Cheney, Manager of Information Security, Sierra View Medical Center

;