CVE Published: 11/06/2018 |
CVE Updated: 06/08/2024 |
CVE Year: 2016 Source: mozilla |
Vendor: Mozilla |
Product: Firefox ESR Status : PUBLISHED
CVE-2016-5293 Description
When the Mozilla Updater is run, if the Updater\'s log file in the working directory points to a hardlink, data can be appended to an arbitrary local file. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox ESR < 45.5 and Firefox < 50.