Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 379
CVE-2016-5297
An error in argument length checking in JavaScript, leading to potential integer overflows or other bounds checking issues. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.
CVE-2016-5297
An error in argument length checking in JavaScript, leading to potenti ...
CVE-2016-5296
A heap-buffer-overflow in Cairo when processing SVG content caused by compiler optimization, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.
CVE-2016-5296
A heap-buffer-overflow in Cairo when processing SVG content caused by ...
CVE-2016-5295
This vulnerability allows an attacker to use the Mozilla Maintenance Service to escalate privilege by having the Maintenance Service invoke the Mozilla Updater to run malicious local files. This vulnerability requires local system access and is a variant of MFSA2013-44. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox < 50.
CVE-2016-5295
This vulnerability allows an attacker to use the Mozilla Maintenance S ...
CVE-2016-5294
The Mozilla Updater can be made to choose an arbitrary target working directory for output files resulting from the update process. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.
CVE-2016-5294
The Mozilla Updater can be made to choose an arbitrary target working ...
CVE-2016-5293
When the Mozilla Updater is run, if the Updater's log file in the working directory points to a hardlink, data can be appended to an arbitrary local file. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox ESR < 45.5 and Firefox < 50.
CVE-2016-5293
When the Mozilla Updater is run, if the Updater's log file in the work ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2016-5297 An error in argument length checking in JavaScript, leading to potential integer overflows or other bounds checking issues. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50. | CVSS3: 9.8 | 4% Низкий | около 8 лет назад | |
CVE-2016-5297 An error in argument length checking in JavaScript, leading to potenti ... | CVSS3: 9.8 | 4% Низкий | около 8 лет назад | |
CVE-2016-5296 A heap-buffer-overflow in Cairo when processing SVG content caused by compiler optimization, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50. | CVSS3: 7.5 | 3% Низкий | около 8 лет назад | |
CVE-2016-5296 A heap-buffer-overflow in Cairo when processing SVG content caused by ... | CVSS3: 7.5 | 3% Низкий | около 8 лет назад | |
CVE-2016-5295 This vulnerability allows an attacker to use the Mozilla Maintenance Service to escalate privilege by having the Maintenance Service invoke the Mozilla Updater to run malicious local files. This vulnerability requires local system access and is a variant of MFSA2013-44. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox < 50. | CVSS3: 7.8 | 0% Низкий | около 8 лет назад | |
CVE-2016-5295 This vulnerability allows an attacker to use the Mozilla Maintenance S ... | CVSS3: 7.8 | 0% Низкий | около 8 лет назад | |
CVE-2016-5294 The Mozilla Updater can be made to choose an arbitrary target working directory for output files resulting from the update process. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50. | CVSS3: 5.5 | 0% Низкий | около 8 лет назад | |
CVE-2016-5294 The Mozilla Updater can be made to choose an arbitrary target working ... | CVSS3: 5.5 | 0% Низкий | около 8 лет назад | |
CVE-2016-5293 When the Mozilla Updater is run, if the Updater's log file in the working directory points to a hardlink, data can be appended to an arbitrary local file. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox ESR < 45.5 and Firefox < 50. | CVSS3: 5.5 | 0% Низкий | около 8 лет назад | |
CVE-2016-5293 When the Mozilla Updater is run, if the Updater's log file in the work ... | CVSS3: 5.5 | 0% Низкий | около 8 лет назад |
Уязвимостей на страницу