Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 368

debian логотип

CVE-2017-7760

около 8 лет назад

The Mozilla Windows updater modifies some files to be updated by readi ...

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2017-7759

около 8 лет назад

Android intent URLs given to Firefox for Android can be used to navigate from HTTP or HTTPS URLs to local "file:" URLs, allowing for the reading of local data through a violation of same-origin policy. Note: This attack only affects Firefox for Android. Other operating systems are not affected. This vulnerability affects Firefox < 54.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2017-7759

около 8 лет назад

Android intent URLs given to Firefox for Android can be used to naviga ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2017-7758

около 8 лет назад

An out-of-bounds read vulnerability with the Opus encoder when the number of channels in an audio stream changes while the encoder is in use. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

CVSS3: 9.1
EPSS: Низкий
debian логотип

CVE-2017-7758

около 8 лет назад

An out-of-bounds read vulnerability with the Opus encoder when the num ...

CVSS3: 9.1
EPSS: Низкий
nvd логотип

CVE-2017-7757

около 8 лет назад

A use-after-free vulnerability in IndexedDB when one of its objects is destroyed in memory while a method on it is still being executed. This results in a potentially exploitable crash. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2017-7757

около 8 лет назад

A use-after-free vulnerability in IndexedDB when one of its objects is ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2017-7756

около 8 лет назад

A use-after-free and use-after-scope vulnerability when logging errors from headers for XML HTTP Requests (XHR). This could result in a potentially exploitable crash. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2017-7756

около 8 лет назад

A use-after-free and use-after-scope vulnerability when logging errors ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2017-7755

около 8 лет назад

The Firefox installer on Windows can be made to load malicious DLL files stored in the same directory as the installer when it is run. This allows privileged execution if the installer is run with elevated privileges. Note: This attack only affects Windows operating systems. Other operating systems are unaffected. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

CVSS3: 7.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2017-7760

The Mozilla Windows updater modifies some files to be updated by readi ...

CVSS3: 7.8
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-7759

Android intent URLs given to Firefox for Android can be used to navigate from HTTP or HTTPS URLs to local "file:" URLs, allowing for the reading of local data through a violation of same-origin policy. Note: This attack only affects Firefox for Android. Other operating systems are not affected. This vulnerability affects Firefox < 54.

CVSS3: 7.5
1%
Низкий
около 8 лет назад
debian логотип
CVE-2017-7759

Android intent URLs given to Firefox for Android can be used to naviga ...

CVSS3: 7.5
1%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-7758

An out-of-bounds read vulnerability with the Opus encoder when the number of channels in an audio stream changes while the encoder is in use. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

CVSS3: 9.1
3%
Низкий
около 8 лет назад
debian логотип
CVE-2017-7758

An out-of-bounds read vulnerability with the Opus encoder when the num ...

CVSS3: 9.1
3%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-7757

A use-after-free vulnerability in IndexedDB when one of its objects is destroyed in memory while a method on it is still being executed. This results in a potentially exploitable crash. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

CVSS3: 9.8
3%
Низкий
около 8 лет назад
debian логотип
CVE-2017-7757

A use-after-free vulnerability in IndexedDB when one of its objects is ...

CVSS3: 9.8
3%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-7756

A use-after-free and use-after-scope vulnerability when logging errors from headers for XML HTTP Requests (XHR). This could result in a potentially exploitable crash. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

CVSS3: 9.8
3%
Низкий
около 8 лет назад
debian логотип
CVE-2017-7756

A use-after-free and use-after-scope vulnerability when logging errors ...

CVSS3: 9.8
3%
Низкий
около 8 лет назад
nvd логотип
CVE-2017-7755

The Firefox installer on Windows can be made to load malicious DLL files stored in the same directory as the installer when it is run. This allows privileged execution if the installer is run with elevated privileges. Note: This attack only affects Windows operating systems. Other operating systems are unaffected. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

CVSS3: 7.8
1%
Низкий
около 8 лет назад

Уязвимостей на страницу


Поделиться