Skip to main content

Mozilla Products Multiple Vulnerabilities

Release Date: 7 Mar 2022 4394 Views

RISK: Extremely High Risk

TYPE: Clients - Browsers

TYPE: Browsers

Multiple vulnerabilities were identified in Mozilla products. A remote attacker could exploit some of these vulnerabilities to trigger remote code execution and security restriction bypass on the targeted system.

Note: CVE-2022-26485 and CVE-2022-26486 are being exploited in the wild.


Impact

  • Remote Code Execution
  • Security Restriction Bypass

System / Technologies affected

Versions prior to:

  •  Firefox 97.0.2
  •  Firefox ESR 91.6.1
  •  Firefox for Android 97.3
  •  Focus 97.3
  •  Thunderbird 91.6.2

 


Solutions

Before installation of the software, please visit the software manufacturer web-site for more details.
 
Apply fixes issued by the vendor:

  •  Firefox 97.0.2
  •  Firefox ESR 91.6.1
  •  Firefox for Android 97.3
  •  Focus 97.3
  •  Thunderbird 91.6.2

Vulnerability Identifier


Source


Related Link