CVE-2023-4104
11.09.2023, 09:15
An invalid Polkit Authentication check and missing authentication requirements for D-Bus methods allowed any local user to configure arbitrary VPN setups. *This bug only affects Mozilla VPN on Linux. Other operating systems are unaffected.* This vulnerability affects Mozilla VPN client for Linux < v2.16.1.Enginsight
Vendor | Product | Version |
---|---|---|
mozilla | vpn | 𝑥 < 2.16.1 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References