Previously Firefox for macOS and Linux would download temporary files to a user-specific directory in <code>/tmp</code>, but this behavior was changed to download them to <code>/tmp</code> where they could be affected by other local users. This behavior was reverted to the original, user-specific directory. <br>*This bug only affects Firefox for macOS and Linux. Other operating systems are unaffected.*. This vulnerability affects Firefox ESR < 91.7 and Thunderbird < 91.7.
2022-12-22T20:15:22.137
2025-04-15T21:15:45.963
Modified
CVSSv3.1: 6.5 (MEDIUM)
| Type | Vendor | Product | Version/Range | Vulnerable? |
|---|---|---|---|---|
| Application | mozilla | firefox_esr | < 91.7 | Yes |
| Application | mozilla | thunderbird | < 91.7 | Yes |
| Operating System | apple | macos | - | No |
| Operating System | linux | linux_kernel | - | No |