4.4

CVE-2009-3274

Mozilla Firefox 3.6a1, 3.5.3, 3.5.2, and earlier 3.5.x versions, and 3.0.14 and earlier 2.x and 3.x versions, on Linux uses a predictable /tmp pathname for files selected from the Downloads window, which allows local users to replace an arbitrary downloaded file by placing a file in a /tmp location before the download occurs, related to the Download Manager component. NOTE: some of these details are obtained from third party information.

Data is provided by the National Vulnerability Database (NVD)
MozillaFirefox Version2.0
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.1
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.2
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.3
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.4
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.5
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.6
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.7
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.8
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.9
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.10
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.11
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.12
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.13
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.14
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.15
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.16
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.17
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.18
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.19
   LinuxLinux Kernel Version-
MozillaFirefox Version2.0.0.20
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.1
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.2
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.3
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.4
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.5
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.6
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.7
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.8
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.9
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.10
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.11
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.12
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.13
   LinuxLinux Kernel Version-
MozillaFirefox Version3.0.14
   LinuxLinux Kernel Version-
MozillaFirefox Version3.5
   LinuxLinux Kernel Version-
MozillaFirefox Version3.5.1
   LinuxLinux Kernel Version-
MozillaFirefox Version3.5.2
   LinuxLinux Kernel Version-
MozillaFirefox Version3.5.3
   LinuxLinux Kernel Version-
MozillaFirefox Version3.6 Updatea1
   LinuxLinux Kernel Version-
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.1% 0.244
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 4.4 3.4 6.4
AV:L/AC:M/Au:N/C:P/I:P/A:P