Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 427
BDU:2019-04581
Уязвимость браузера Firefox, связанная с ошибками при обработке объектов в памяти, позволяющая нарушителю выполнить произвольный код
SUSE-SU-2018:1768-1
Security update for nagios-nrpe
CVE-2018-5183
Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.
CVE-2018-5183
Mozilla developers backported selected changes in the Skia library. Th ...
CVE-2018-5182
If a text string that happens to be a filename in the operating system's native format is dragged and dropped onto the addressbar the specified local file will be opened. This is contrary to policy and is what would happen if the string were the equivalent "file:" URL. This vulnerability affects Firefox < 60.
CVE-2018-5182
If a text string that happens to be a filename in the operating system ...
CVE-2018-5181
If a URL using the "file:" protocol is dragged and dropped onto an open tab that is running in a different child process the tab will open a local file corresponding to the dropped URL, contrary to policy. One way to make the target tab open more reliably in a separate process is to open it with the "noopener" keyword. This vulnerability affects Firefox < 60.
CVE-2018-5181
If a URL using the "file:" protocol is dragged and dropped onto an ope ...
CVE-2018-5180
A use-after-free vulnerability can occur during WebGL operations. While this results in a potentially exploitable crash, the vulnerability is limited because the memory is freed and reused in a brief window of time during the freeing of the same callstack. This vulnerability affects Firefox < 60.
CVE-2018-5180
A use-after-free vulnerability can occur during WebGL operations. Whil ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
BDU:2019-04581 Уязвимость браузера Firefox, связанная с ошибками при обработке объектов в памяти, позволяющая нарушителю выполнить произвольный код | CVSS3: 9.8 | 2% Низкий | около 8 лет назад | |
SUSE-SU-2018:1768-1 Security update for nagios-nrpe | 100% Критический | около 8 лет назад | ||
CVE-2018-5183 Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes during graphic operations. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8. | CVSS3: 9.8 | 3% Низкий | около 8 лет назад | |
CVE-2018-5183 Mozilla developers backported selected changes in the Skia library. Th ... | CVSS3: 9.8 | 3% Низкий | около 8 лет назад | |
CVE-2018-5182 If a text string that happens to be a filename in the operating system's native format is dragged and dropped onto the addressbar the specified local file will be opened. This is contrary to policy and is what would happen if the string were the equivalent "file:" URL. This vulnerability affects Firefox < 60. | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2018-5182 If a text string that happens to be a filename in the operating system ... | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2018-5181 If a URL using the "file:" protocol is dragged and dropped onto an open tab that is running in a different child process the tab will open a local file corresponding to the dropped URL, contrary to policy. One way to make the target tab open more reliably in a separate process is to open it with the "noopener" keyword. This vulnerability affects Firefox < 60. | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2018-5181 If a URL using the "file:" protocol is dragged and dropped onto an ope ... | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2018-5180 A use-after-free vulnerability can occur during WebGL operations. While this results in a potentially exploitable crash, the vulnerability is limited because the memory is freed and reused in a brief window of time during the freeing of the same callstack. This vulnerability affects Firefox < 60. | CVSS3: 7.5 | 2% Низкий | около 8 лет назад | |
CVE-2018-5180 A use-after-free vulnerability can occur during WebGL operations. Whil ... | CVSS3: 7.5 | 2% Низкий | около 8 лет назад |
Уязвимостей на страницу