A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an arbitrary directory. This could have been used to escalate to SYSTEM access.<br>*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.
Metrics
Affected Vendors & Products
References
History
Wed, 16 Apr 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2025-04-16T14:48:11.579Z
Reserved: 2022-01-07T00:00:00.000Z
Link: CVE-2022-22753

Updated: 2024-08-03T03:21:49.106Z

Status : Modified
Published: 2022-12-22T20:15:17.607
Modified: 2025-04-16T15:15:48.227
Link: CVE-2022-22753
