Lucene search

K
ubuntucveUbuntu.comUB:CVE-2023-23597
HistoryJan 18, 2023 - 12:00 a.m.

CVE-2023-23597

2023-01-1800:00:00
ubuntu.com
ubuntu.com
17
compromised web process
web security restrictions
child process
file context
exploit primitive
arbitrary file read
firefox vulnerability
firefox < 109
mozjs
spidermonkey engine
ubuntu 22.04
firefox snap

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

EPSS

0.002

Percentile

52.4%

A compromised web child process could disable web security opening
restrictions, leading to a new child process being spawned within the
<code>file://</code> context. Given a reliable exploit primitive, this new
process could be exploited again leading to arbitrary file read. This
vulnerability affects Firefox < 109.

Notes

Author Note
tyhicks mozjs contains a copy of the SpiderMonkey JavaScript engine
mdeslaur starting with Ubuntu 22.04, the firefox package is just a script that installs the Firefox snap

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

NONE

Availability Impact

NONE

CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N

EPSS

0.002

Percentile

52.4%