Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 427

fstec логотип

BDU:2019-04581

около 8 лет назад

Уязвимость браузера Firefox, связанная с ошибками при обработке объектов в памяти, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:1768-1

около 8 лет назад

Security update for nagios-nrpe

EPSS: Критический
nvd логотип

CVE-2018-5183

около 8 лет назад

Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2018-5183

около 8 лет назад

Mozilla developers backported selected changes in the Skia library. Th ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2018-5182

около 8 лет назад

If a text string that happens to be a filename in the operating system's native format is dragged and dropped onto the addressbar the specified local file will be opened. This is contrary to policy and is what would happen if the string were the equivalent "file:" URL. This vulnerability affects Firefox < 60.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-5182

около 8 лет назад

If a text string that happens to be a filename in the operating system ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-5181

около 8 лет назад

If a URL using the "file:" protocol is dragged and dropped onto an open tab that is running in a different child process the tab will open a local file corresponding to the dropped URL, contrary to policy. One way to make the target tab open more reliably in a separate process is to open it with the "noopener" keyword. This vulnerability affects Firefox < 60.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-5181

около 8 лет назад

If a URL using the "file:" protocol is dragged and dropped onto an ope ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-5180

около 8 лет назад

A use-after-free vulnerability can occur during WebGL operations. While this results in a potentially exploitable crash, the vulnerability is limited because the memory is freed and reused in a brief window of time during the freeing of the same callstack. This vulnerability affects Firefox < 60.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-5180

около 8 лет назад

A use-after-free vulnerability can occur during WebGL operations. Whil ...

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
fstec логотип
BDU:2019-04581

Уязвимость браузера Firefox, связанная с ошибками при обработке объектов в памяти, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.8
2%
Низкий
около 8 лет назад
suse-cvrf логотип
SUSE-SU-2018:1768-1

Security update for nagios-nrpe

100%
Критический
около 8 лет назад
nvd логотип
CVE-2018-5183

Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.

CVSS3: 9.8
3%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5183

Mozilla developers backported selected changes in the Skia library. Th ...

CVSS3: 9.8
3%
Низкий
около 8 лет назад
nvd логотип
CVE-2018-5182

If a text string that happens to be a filename in the operating system's native format is dragged and dropped onto the addressbar the specified local file will be opened. This is contrary to policy and is what would happen if the string were the equivalent "file:" URL. This vulnerability affects Firefox < 60.

CVSS3: 7.5
2%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5182

If a text string that happens to be a filename in the operating system ...

CVSS3: 7.5
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2018-5181

If a URL using the "file:" protocol is dragged and dropped onto an open tab that is running in a different child process the tab will open a local file corresponding to the dropped URL, contrary to policy. One way to make the target tab open more reliably in a separate process is to open it with the "noopener" keyword. This vulnerability affects Firefox < 60.

CVSS3: 7.5
2%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5181

If a URL using the "file:" protocol is dragged and dropped onto an ope ...

CVSS3: 7.5
2%
Низкий
около 8 лет назад
nvd логотип
CVE-2018-5180

A use-after-free vulnerability can occur during WebGL operations. While this results in a potentially exploitable crash, the vulnerability is limited because the memory is freed and reused in a brief window of time during the freeing of the same callstack. This vulnerability affects Firefox < 60.

CVSS3: 7.5
2%
Низкий
около 8 лет назад
debian логотип
CVE-2018-5180

A use-after-free vulnerability can occur during WebGL operations. Whil ...

CVSS3: 7.5
2%
Низкий
около 8 лет назад

Уязвимостей на страницу


Поделиться