Lucene search

K
ubuntucveUbuntu.comUB:CVE-2022-38472
HistoryAug 24, 2022 - 12:00 a.m.

CVE-2022-38472

2022-08-2400:00:00
ubuntu.com
ubuntu.com
18
xslt error handling
attacker-controlled content
address bar display
user data
thunderbird
firefox
spoofed origin

6.5 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

0.002 Low

EPSS

Percentile

52.1%

An attacker could have abused XSLT error handling to associate
attacker-controlled content with another origin which was displayed in the
address bar. This could have been used to fool the user into submitting
data intended for the spoofed origin. This vulnerability affects
Thunderbird < 102.2, Thunderbird < 91.13, Firefox ESR < 91.13, Firefox ESR
< 102.2, and Firefox < 104.

Notes

Author Note
mdeslaur starting with Ubuntu 22.04, the firefox package is just a script that installs the Firefox snap
OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchfirefox< 104.0+build3-0ubuntu0.18.04.1UNKNOWN
ubuntu20.04noarchfirefox< 104.0+build3-0ubuntu0.20.04.1UNKNOWN
ubuntu18.04noarchthunderbird< 1:102.2.2+build1-0ubuntu0.18.04.1UNKNOWN
ubuntu20.04noarchthunderbird< 1:102.2.2+build1-0ubuntu0.20.04.1UNKNOWN
ubuntu22.04noarchthunderbird< 1:102.2.2+build1-0ubuntu0.22.04.1UNKNOWN

6.5 Medium

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

HIGH

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:H/A:N

0.002 Low

EPSS

Percentile

52.1%