Insecure library loading in Mozilla Firefox - CVE-2019-9798
Published: March 21, 2019
Mozilla Firefox
Detailed vulnerability description
The vulnerability allows a malicious application to escalate privileges on the system.
The vulnerability exists due to Firefox on Android allows loading of a library from APITRACE_LIB path that is writable by default by all users and applications. A malicious third-party application can place a malicious library and perform MitM attack.
Note: this vulnerability affects Android installation only.