A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an IPC message. This allows for read and write access to the local file system. This vulnerability affects Firefox ESR < 52.1 and Firefox < 53.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mozilla

Published: 2018-06-11T21:00:00

Updated: 2018-06-12T09:57:01

Reserved: 2017-01-13T00:00:00


Link: CVE-2017-5456

JSON object: View

cve-icon NVD Information

Status : Analyzed

Published: 2018-06-11T21:29:06.873

Modified: 2019-10-03T00:03:26.223


Link: CVE-2017-5456

JSON object: View

cve-icon Redhat Information

No data.

CWE