maintenservice_installer.exe in the Maintenance Service Installer in Mozilla Firefox before 29.0 and Firefox ESR 24.x before 24.5 on Windows allows local users to gain privileges by placing a Trojan horse DLL file into a temporary directory at an unspecified point in the update process.
The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.
Link | Tags |
---|---|
https://bugzilla.mozilla.org/show_bug.cgi?id=961676 | patch exploit vendor advisory issue tracking |
http://lists.fedoraproject.org/pipermail/package-announce/2014-May/132332.html | third party advisory vendor advisory |
https://security.gentoo.org/glsa/201504-01 | third party advisory vendor advisory |
http://secunia.com/advisories/59866 | third party advisory |
http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html | third party advisory |
http://www.securitytracker.com/id/1030163 | third party advisory vdb entry |
http://www.mozilla.org/security/announce/2014/mfsa2014-35.html | vendor advisory |
http://lists.fedoraproject.org/pipermail/package-announce/2014-May/132437.html | third party advisory vendor advisory |
http://seclists.org/fulldisclosure/2021/Mar/14 | third party advisory mailing list |
http://packetstormsecurity.com/files/161696/Mozilla-Arbitrary-Code-Execution-Privilege-Escalation.html | third party advisory vdb entry |