"value":"On Android systems, Firefox can load a library from APITRACE_LIB, which is writable by all users and applications. This could allow malicious third party applications to execute a man-in-the-middle attack if a malicious code was written to that location and loaded. *Note: This issue only affects Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 66."
}
]
},
"data_type":"CVE",
"affects":{
"vendor":{
"vendor_data":[
{
"product":{
"product_data":[
{
"version":{
"version_data":[
{
"version_affected":"<",
"version_value":"66"
}
]
},
"product_name":"Firefox"
}
]
},
"vendor_name":"Mozilla"
}
]
}
},
"CVE_data_meta":{
"ID":"CVE-2019-9798",
"ASSIGNER":"security@mozilla.org",
"STATE":"PUBLIC"
},
"data_format":"MITRE",
"problemtype":{
"problemtype_data":[
{
"description":[
{
"lang":"eng",
"value":"Library is loaded from world writable APITRACE_LIB location"