MFSA2022-08: Mozilla VPN local privilege escalation vis uncontrolled OpenSSL search path
Published Feb 23, 2022
·Updated
Mozilla VPN local privilege escalation vis uncontrolled OpenSSL search path
Affected Software
1 affected componentFixes available
Mozilla Mozilla VPN<2.7.1
2.7.1
Event History
Feb 23, 2022
Advisory Published
via Mozilla·12:00 AM
Frequently Asked Questions
1
What is the severity of MFSA2022-08?
MFSA2022-08 is rated as a high-severity vulnerability due to its potential for local privilege escalation.
2
How do I fix MFSA2022-08?
To fix MFSA2022-08, update Mozilla VPN to version 2.7.1 or later.
3
What does MFSA2022-08 affect?
MFSA2022-08 affects Mozilla VPN versions earlier than 2.7.1.
4
Can I safely use Mozilla VPN with MFSA2022-08 unpatched?
Using Mozilla VPN with MFSA2022-08 unpatched is not recommended as it poses a security risk.
5
What type of vulnerability is MFSA2022-08?
MFSA2022-08 is a local privilege escalation vulnerability caused by an uncontrolled OpenSSL search path.