Lucene search

K
alpinelinuxAlpine Linux Development TeamALPINE:CVE-2022-22749
HistoryDec 22, 2022 - 8:15 p.m.

CVE-2022-22749

2022-12-2220:15:16
Alpine Linux Development Team
security.alpinelinux.org
20
cve-2022-22749
qr codes
firefox for android
non-web urls
vulnerability
unix
firefox < 96
operating systems

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

AI Score

4.9

Confidence

High

EPSS

0.001

Percentile

37.2%

When scanning QR codes, Firefox for Android would have allowed navigation to some URLs that do not point to web content.<br>This bug only affects Firefox for Android. Other operating systems are unaffected.. This vulnerability affects Firefox < 96.

CVSS3

4.3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:L/A:N

AI Score

4.9

Confidence

High

EPSS

0.001

Percentile

37.2%