Description
A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an IPC message. This allows for read and write access to the local file system. This vulnerability affects Firefox ESR < 52.1 and Firefox < 53.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2017-14560 | A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an IPC message. This allows for read and write access to the local file system. This vulnerability affects Firefox ESR < 52.1 and Firefox < 53. |
Ubuntu USN |
USN-3260-1 | Firefox vulnerabilities |
References
History
Tue, 25 Nov 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | ||
| Vendors & Products |
Mozilla firefox Esr
|
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2024-08-05T15:04:14.745Z
Reserved: 2017-01-13T00:00:00.000Z
Link: CVE-2017-5456
No data.
Status : Modified
Published: 2018-06-11T21:29:06.873
Modified: 2025-11-25T17:50:16.803
Link: CVE-2017-5456
OpenCVE Enrichment
No data.
Weaknesses
EUVD
Ubuntu USN