Mozilla: Opening an extension-less download may have inadvertently launched an executable instead
Published Jan 7, 2021
8.8
HIGHCVSS 3.1
EPSS 1.27%
Description
If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads directory with the same name but with an executable extension (such as .bat or .exe) that executable would have been launched instead. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
Affected products
-
Affected
- ≥ unspecified, < 84
-
Affected
- ≥ unspecified, < 78.6
-
Affected
- ≥ unspecified, < 78.6
Default status is the baseline for the product. Each version can override it (patched versions can be marked unaffected).
| Vendor | Product | Default status | Versions |
|---|---|---|---|
| Mozilla | Firefox | unknown | Affected
|
| Mozilla | Firefox ESR | unknown | Affected
|
| Mozilla | Thunderbird | unknown | Affected
|
- < 84.0
- < 78.6.0
- < 78.6.0
No data.
Red Hat Enterprise Linux 5
thunderbird
Not affected
Red Hat Enterprise Linux 6
firefox
Not affected
Red Hat Enterprise Linux 6
thunderbird
Not affected
Red Hat Enterprise Linux 7
firefox
Not affected
Red Hat Enterprise Linux 7
thunderbird
Not affected
Red Hat Enterprise Linux 8
firefox
Not affected
Red Hat Enterprise Linux 8
thunderbird
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | thunderbird | Not affected | n/a |
| Red Hat Enterprise Linux 6 | firefox | Not affected | n/a |
| Red Hat Enterprise Linux 6 | thunderbird | Not affected | n/a |
| Red Hat Enterprise Linux 7 | firefox | Not affected | n/a |
| Red Hat Enterprise Linux 7 | thunderbird | Not affected | n/a |
| Red Hat Enterprise Linux 8 | firefox | Not affected | n/a |
| Red Hat Enterprise Linux 8 | thunderbird | Not affected | n/a |
No package ranges for this CVE.
Remediation
No remediation recorded yet.
No CWE recorded.
References (10)
- https://access.redhat.com/security/cve/CVE-2020-35112 Vendor Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=1661365 x_refsource_MISCPermissions Required
- https://bugzilla.redhat.com/show_bug.cgi?id=1908028 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-22808 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2020-35112
- https://www.cve.org/CVERecord?id=CVE-2020-35112
- https://www.mozilla.org/en-US/security/advisories/mfsa2020-55/#CVE-2020-35112
- https://www.mozilla.org/security/advisories/mfsa2020-54/ x_refsource_MISCVendor Advisory
- https://www.mozilla.org/security/advisories/mfsa2020-55/ x_refsource_MISCVendor Advisory
- https://www.mozilla.org/security/advisories/mfsa2020-56/ x_refsource_MISCVendor Advisory
| Link | Providers | Tags |
|---|---|---|
| https://access.redhat.com/security/cve/CVE-2020-35112 | Vendor Advisory | |
| https://bugzilla.mozilla.org/show_bug.cgi?id=1661365 | x_refsource_MISCPermissions Required | |
| https://bugzilla.redhat.com/show_bug.cgi?id=1908028 | Issue Tracking | |
| https://euvd.enisa.europa.eu/vulnerability/EUVD-2020-22808 | Advisory | |
| https://nvd.nist.gov/vuln/detail/CVE-2020-35112 | ||
| https://www.cve.org/CVERecord?id=CVE-2020-35112 | ||
| https://www.mozilla.org/en-US/security/advisories/mfsa2020-55/#CVE-2020-35112 | ||
| https://www.mozilla.org/security/advisories/mfsa2020-54/ | x_refsource_MISCVendor Advisory | |
| https://www.mozilla.org/security/advisories/mfsa2020-55/ | x_refsource_MISCVendor Advisory | |
| https://www.mozilla.org/security/advisories/mfsa2020-56/ | x_refsource_MISCVendor Advisory |
Change history (0)
No recorded changes yet.
CVE.org / MITRE
CISA Vulnrichment
No data
GitHub
No data