CVE-2023-4052
published 2023-08-01CVE-2023-4052: The Firefox updater created a directory writable by non-privileged users. When uninstalling Firefox, any files in that directory would be recursively deleted…
PriorityP338medium6.5CVSS 3.1
AVNACLPRLUINSUCNIHAN
EPSS
0.58%
43.9th percentile
The Firefox updater created a directory writable by non-privileged users. When uninstalling Firefox, any files in that directory would be recursively deleted with the permissions of the uninstalling user account. This could be combined with creation of a junction (a form of symbolic link) to allow arbitrary file deletion controlled by the non-privileged user.
*This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 116, Firefox ESR < 115.1, and Thunderbird < 115.1.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | firefox | — | — |
| debian | firefox-esr | — | — |
| debian | thunderbird | — | — |
| mozilla | firefox | < 116.0 | 116.0 |
| mozilla | firefox | — | — |
| mozilla | firefox | >= unspecified < 116 | 116 |
| mozilla | firefox_esr | < 115.1 | 115.1 |
| mozilla | firefox_esr | >= unspecified < 115.1 | 115.1 |
| mozilla | thunderbird | >= unspecified < 115.1 | 115.1 |
CVSS provenance
nvdv3.16.5MEDIUMCVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N
osv6.5MEDIUM
vendor_debian6.5LOW
vendor_redhat6.5MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
Mozilla: File deletion and privilege escalation through Firefox uninstaller
vendor_redhat·2023-08-01·CVSS 6.5
CVE-2023-4052 [MEDIUM] CWE-276 Mozilla: File deletion and privilege escalation through Firefox uninstaller
Mozilla: File deletion and privilege escalation through Firefox uninstaller
The Firefox updater created a directory writable by non-privileged users. When uninstalling Firefox, any files in that directory would be recursively deleted with the permissions of the uninstalling user account. This could be combined with creation of a junction (a form of symbolic link) to allow arbitrary file deletion controlled by the non-privileged user.
*This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 116, Firefox ESR < 115.1, and Thunderbird < 115.1.
A flaw was found in Mozilla. The Mozilla Foundation Security Advisory described the issue of the Firefox updater creating a directory writable by non-privileged users. When uninstalling Fi
Debian
CVE-2023-4052: firefox - The Firefox updater created a directory writable by non-privileged users. When u...
vendor_debian·2023·CVSS 6.5
CVE-2023-4052 [MEDIUM] CVE-2023-4052: firefox - The Firefox updater created a directory writable by non-privileged users. When u...
The Firefox updater created a directory writable by non-privileged users. When uninstalling Firefox, any files in that directory would be recursively deleted with the permissions of the uninstalling user account. This could be combined with creation of a junction (a form of symbolic link) to allow arbitrary file deletion controlled by the non-privileged user. *This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 116, Firefox ESR < 115.1, and Thunderbird < 115.1.
Scope: local
sid: resolved
Mozilla
Mozilla Foundation Security Advisory 2023-31: CVE-2023-4052
vendor_mozilla·CVSS 6.5
CVE-2023-4052 [MEDIUM] Mozilla Foundation Security Advisory 2023-31: CVE-2023-4052
Mozilla Foundation Security Advisory 2023-31
CVE: CVE-2023-4052
Product: Firefox ESR
Impact: high
Fixed in: Firefox ESR 115.1
Mozilla
Mozilla Foundation Security Advisory 2023-29: CVE-2023-4052
vendor_mozilla·CVSS 6.5
CVE-2023-4052 [MEDIUM] Mozilla Foundation Security Advisory 2023-29: CVE-2023-4052
Mozilla Foundation Security Advisory 2023-29
CVE: CVE-2023-4052
Product: Firefox
Impact: high
Fixed in: Firefox 116
Mozilla
Mozilla Foundation Security Advisory 2023-33: CVE-2023-4052
vendor_mozilla·CVSS 6.5
CVE-2023-4052 [MEDIUM] Mozilla Foundation Security Advisory 2023-33: CVE-2023-4052
Mozilla Foundation Security Advisory 2023-33
CVE: CVE-2023-4052
Product: Thunderbird
Impact: high
Fixed in: Thunderbird 115.1
GHSA
GHSA-gjqm-928w-fr7f: The Firefox updater created a directory writable by non-privileged users
ghsa_unreviewed·2023-08-01
CVE-2023-4052 [MEDIUM] CWE-59 GHSA-gjqm-928w-fr7f: The Firefox updater created a directory writable by non-privileged users
The Firefox updater created a directory writable by non-privileged users. When uninstalling Firefox, any files in that directory would be recursively deleted with the permissions of the uninstalling user account. This could be combined with creation of a junction (a form of symbolic link) to allow arbitrary file deletion controlled by the non-privileged user.
*This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 116 and Firefox ESR < 115.1.
OSV
CVE-2023-4052: The Firefox updater created a directory writable by non-privileged users
osv·2023-08-01·CVSS 6.5
CVE-2023-4052 [MEDIUM] CVE-2023-4052: The Firefox updater created a directory writable by non-privileged users
The Firefox updater created a directory writable by non-privileged users. When uninstalling Firefox, any files in that directory would be recursively deleted with the permissions of the uninstalling user account. This could be combined with creation of a junction (a form of symbolic link) to allow arbitrary file deletion controlled by the non-privileged user. *This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 116, Firefox ESR < 115.1, and Thunderbird < 115.1.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
https://bugzilla.mozilla.org/show_bug.cgi?id=1824420https://www.mozilla.org/security/advisories/mfsa2023-29/https://www.mozilla.org/security/advisories/mfsa2023-31/https://www.mozilla.org/security/advisories/mfsa2023-33/https://bugzilla.mozilla.org/show_bug.cgi?id=1824420https://www.mozilla.org/security/advisories/mfsa2023-29/https://www.mozilla.org/security/advisories/mfsa2023-31/https://www.mozilla.org/security/advisories/mfsa2023-33/
2023-08-01
Published