CVE-2022-29910
published 2022-12-22CVE-2022-29910: When closed or sent to the background, Firefox for Android would not properly record and persist HSTS settings.*Note: This issue only affected Firefox for…
PriorityP424medium6.1CVSS 3.1
AVNACLPRNUIRSCCLILAN
EPSS
0.36%
28.4th percentile
When closed or sent to the background, Firefox for Android would not properly record and persist HSTS settings.*Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 100.
Affected
4 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | — | — |
| mozilla | firefox | < 100.0 | 100.0 |
| mozilla | firefox | — | — |
| mozilla | firefox | >= unspecified < 100 | 100 |
CVSS provenance
nvdv3.16.1MEDIUMCVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
vendor_debian6.1LOW
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Debian
CVE-2022-29910: firefox - When closed or sent to the background, Firefox for Android would not properly re...
vendor_debian·2022·CVSS 6.1
CVE-2022-29910 [MEDIUM] CVE-2022-29910: firefox - When closed or sent to the background, Firefox for Android would not properly re...
When closed or sent to the background, Firefox for Android would not properly record and persist HSTS settings.*Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 100.
Scope: local
sid: resolved
Mozilla
Mozilla Foundation Security Advisory 2022-16: CVE-2022-29910
vendor_mozilla·CVSS 6.1
CVE-2022-29910 [MEDIUM] Mozilla Foundation Security Advisory 2022-16: CVE-2022-29910
Mozilla Foundation Security Advisory 2022-16
CVE: CVE-2022-29910
Product: Firefox
Impact: high
Fixed in: Firefox 100
GHSA
GHSA-3gq8-8fwh-fc7q: When closed or sent to the background, Firefox for Android would not properly record and persist HSTS settings
ghsa_unreviewed·2022-12-22
CVE-2022-29910 [MEDIUM] CWE-601 GHSA-3gq8-8fwh-fc7q: When closed or sent to the background, Firefox for Android would not properly record and persist HSTS settings
When closed or sent to the background, Firefox for Android would not properly record and persist HSTS settings.*Note: This issue only affected Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 100.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2022-12-22
Published