Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 296
GHSA-mmvq-h6g9-8h39
Memory safety bugs present in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, and Firefox ESR < 140.9.
GHSA-c97j-hmj5-572h
Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 149.
GHSA-px39-2r97-x6x6
Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability affects Firefox < 149.
GHSA-h6r3-p5gv-5qgc
Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149 and Firefox ESR < 140.9.
GHSA-c3hv-rw36-5mgq
Spoofing issue in the Privacy: Anti-Tracking component. This vulnerability affects Firefox < 149.
GHSA-xh4v-qr89-3hj3
Memory safety bugs present in Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149.
GHSA-2r77-x4qh-mhc3
Denial-of-service in the XML component. This vulnerability affects Firefox < 149.
GHSA-j97q-98f4-5wq3
Undefined behavior in the Audio/Video component. This vulnerability affects Firefox < 149.
GHSA-fmr6-7878-wx6p
Privilege escalation in the IPC component. This vulnerability affects Firefox < 149.
GHSA-f58q-fr7j-32m6
Denial-of-service in the Libraries component in NSS. This vulnerability affects Firefox < 149.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-mmvq-h6g9-8h39 Memory safety bugs present in Firefox ESR 115.33, Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149, Firefox ESR < 115.34, and Firefox ESR < 140.9. | CVSS3: 9.8 | 0% Низкий | 4 месяца назад | |
GHSA-c97j-hmj5-572h Use-after-free in the JavaScript Engine component. This vulnerability affects Firefox < 149. | CVSS3: 9.8 | 0% Низкий | 4 месяца назад | |
GHSA-px39-2r97-x6x6 Sandbox escape due to use-after-free in the Graphics: Canvas2D component. This vulnerability affects Firefox < 149. | CVSS3: 10 | 0% Низкий | 4 месяца назад | |
GHSA-h6r3-p5gv-5qgc Memory safety bugs present in Firefox ESR 140.8, Thunderbird ESR 140.8, Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149 and Firefox ESR < 140.9. | CVSS3: 9.8 | 0% Низкий | 4 месяца назад | |
GHSA-c3hv-rw36-5mgq Spoofing issue in the Privacy: Anti-Tracking component. This vulnerability affects Firefox < 149. | CVSS3: 6.5 | 0% Низкий | 4 месяца назад | |
GHSA-xh4v-qr89-3hj3 Memory safety bugs present in Firefox 148 and Thunderbird 148. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 149. | CVSS3: 9.8 | 0% Низкий | 4 месяца назад | |
GHSA-2r77-x4qh-mhc3 Denial-of-service in the XML component. This vulnerability affects Firefox < 149. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад | |
GHSA-j97q-98f4-5wq3 Undefined behavior in the Audio/Video component. This vulnerability affects Firefox < 149. | CVSS3: 9.1 | 0% Низкий | 4 месяца назад | |
GHSA-fmr6-7878-wx6p Privilege escalation in the IPC component. This vulnerability affects Firefox < 149. | CVSS3: 8.8 | 0% Низкий | 4 месяца назад | |
GHSA-f58q-fr7j-32m6 Denial-of-service in the Libraries component in NSS. This vulnerability affects Firefox < 149. | CVSS3: 7.5 | 1% Низкий | 4 месяца назад |
Уязвимостей на страницу