CVE-2020-35112
published 2021-01-07CVE-2020-35112: If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads…
PriorityP340high8.8CVSS 3.1
AVNACLPRNUIRSUCHIHAH
EPSS
1.29%
67.0th percentile
If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads directory with the same name but with an executable extension (such as .bat or .exe) that executable would have been launched instead. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
Affected
10 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | — | — |
| debian | firefox-esr | — | — |
| debian | thunderbird | — | — |
| mozilla | firefox | < 84.0 | 84.0 |
| mozilla | firefox | — | — |
| mozilla | firefox | >= unspecified < 84 | 84 |
| mozilla | firefox_esr | < 78.6.0 | 78.6.0 |
| mozilla | firefox_esr | >= unspecified < 78.6 | 78.6 |
| mozilla | thunderbird | < 78.6.0 | 78.6.0 |
| mozilla | thunderbird | >= unspecified < 78.6 | 78.6 |
CVSS provenance
nvdv3.18.8HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv8.8HIGH
vendor_debian8.8LOW
vendor_redhat8.8HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-c2mj-qmxh-xhgx: If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the do
ghsa_unreviewed·2022-05-24
CVE-2020-35112 [HIGH] GHSA-c2mj-qmxh-xhgx: If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the do
If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads directory with the same name but with an executable extension (such as .bat or .exe) that executable would have been launched instead. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
OSV
CVE-2020-35112: If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the do
osv·2021-01-07·CVSS 8.8
CVE-2020-35112 [HIGH] CVE-2020-35112: If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the do
If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads directory with the same name but with an executable extension (such as .bat or .exe) that executable would have been launched instead. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
Red Hat
Mozilla: Opening an extension-less download may have inadvertently launched an executable instead
vendor_redhat·2020-12-15·CVSS 8.8
CVE-2020-35112 [HIGH] Mozilla: Opening an extension-less download may have inadvertently launched an executable instead
Mozilla: Opening an extension-less download may have inadvertently launched an executable instead
If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads directory with the same name but with an executable extension (such as .bat or .exe) that executable would have been launched instead. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
The Mozilla Foundation Security Advisory describes this flaw as:
If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the download
Debian
CVE-2020-35112: firefox - If a user downloaded a file lacking an extension on Windows, and then "Open"-ed ...
vendor_debian·2020·CVSS 8.8
CVE-2020-35112 [HIGH] CVE-2020-35112: firefox - If a user downloaded a file lacking an extension on Windows, and then "Open"-ed ...
If a user downloaded a file lacking an extension on Windows, and then "Open"-ed it from the downloads panel, if there was an executable file in the downloads directory with the same name but with an executable extension (such as .bat or .exe) that executable would have been launched instead. *Note: This issue only affected Windows operating systems. Other operating systems are unaffected.*. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
Scope: local
sid: resolved
Mozilla
Mozilla Foundation Security Advisory 2020-54: CVE-2020-35112
vendor_mozilla·CVSS 8.8
CVE-2020-35112 [HIGH] Mozilla Foundation Security Advisory 2020-54: CVE-2020-35112
Mozilla Foundation Security Advisory 2020-54
CVE: CVE-2020-35112
Product: Firefox
Impact: high
Fixed in: Firefox 84
Mozilla
Mozilla Foundation Security Advisory 2020-55: CVE-2020-35112
vendor_mozilla·CVSS 8.8
CVE-2020-35112 [HIGH] Mozilla Foundation Security Advisory 2020-55: CVE-2020-35112
Mozilla Foundation Security Advisory 2020-55
CVE: CVE-2020-35112
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 78.6
Mozilla
Mozilla Foundation Security Advisory 2020-56: CVE-2020-35112
vendor_mozilla·CVSS 8.8
CVE-2020-35112 [HIGH] Mozilla Foundation Security Advisory 2020-56: CVE-2020-35112
Mozilla Foundation Security Advisory 2020-56
CVE: CVE-2020-35112
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 78.6
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.mozilla.org/show_bug.cgi?id=1661365https://www.mozilla.org/security/advisories/mfsa2020-54/https://www.mozilla.org/security/advisories/mfsa2020-55/https://www.mozilla.org/security/advisories/mfsa2020-56/https://bugzilla.mozilla.org/show_bug.cgi?id=1661365https://www.mozilla.org/security/advisories/mfsa2020-54/https://www.mozilla.org/security/advisories/mfsa2020-55/https://www.mozilla.org/security/advisories/mfsa2020-56/
2021-01-07
Published