Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 379

nvd логотип

CVE-2016-5297

около 8 лет назад

An error in argument length checking in JavaScript, leading to potential integer overflows or other bounds checking issues. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2016-5297

около 8 лет назад

An error in argument length checking in JavaScript, leading to potenti ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2016-5296

около 8 лет назад

A heap-buffer-overflow in Cairo when processing SVG content caused by compiler optimization, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2016-5296

около 8 лет назад

A heap-buffer-overflow in Cairo when processing SVG content caused by ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2016-5295

около 8 лет назад

This vulnerability allows an attacker to use the Mozilla Maintenance Service to escalate privilege by having the Maintenance Service invoke the Mozilla Updater to run malicious local files. This vulnerability requires local system access and is a variant of MFSA2013-44. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox < 50.

CVSS3: 7.8
EPSS: Низкий
debian логотип

CVE-2016-5295

около 8 лет назад

This vulnerability allows an attacker to use the Mozilla Maintenance S ...

CVSS3: 7.8
EPSS: Низкий
nvd логотип

CVE-2016-5294

около 8 лет назад

The Mozilla Updater can be made to choose an arbitrary target working directory for output files resulting from the update process. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2016-5294

около 8 лет назад

The Mozilla Updater can be made to choose an arbitrary target working ...

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2016-5293

около 8 лет назад

When the Mozilla Updater is run, if the Updater's log file in the working directory points to a hardlink, data can be appended to an arbitrary local file. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox ESR < 45.5 and Firefox < 50.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2016-5293

около 8 лет назад

When the Mozilla Updater is run, if the Updater's log file in the work ...

CVSS3: 5.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2016-5297

An error in argument length checking in JavaScript, leading to potential integer overflows or other bounds checking issues. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

CVSS3: 9.8
4%
Низкий
около 8 лет назад
debian логотип
CVE-2016-5297

An error in argument length checking in JavaScript, leading to potenti ...

CVSS3: 9.8
4%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-5296

A heap-buffer-overflow in Cairo when processing SVG content caused by compiler optimization, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

CVSS3: 7.5
3%
Низкий
около 8 лет назад
debian логотип
CVE-2016-5296

A heap-buffer-overflow in Cairo when processing SVG content caused by ...

CVSS3: 7.5
3%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-5295

This vulnerability allows an attacker to use the Mozilla Maintenance Service to escalate privilege by having the Maintenance Service invoke the Mozilla Updater to run malicious local files. This vulnerability requires local system access and is a variant of MFSA2013-44. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox < 50.

CVSS3: 7.8
0%
Низкий
около 8 лет назад
debian логотип
CVE-2016-5295

This vulnerability allows an attacker to use the Mozilla Maintenance S ...

CVSS3: 7.8
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-5294

The Mozilla Updater can be made to choose an arbitrary target working directory for output files resulting from the update process. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.

CVSS3: 5.5
0%
Низкий
около 8 лет назад
debian логотип
CVE-2016-5294

The Mozilla Updater can be made to choose an arbitrary target working ...

CVSS3: 5.5
0%
Низкий
около 8 лет назад
nvd логотип
CVE-2016-5293

When the Mozilla Updater is run, if the Updater's log file in the working directory points to a hardlink, data can be appended to an arbitrary local file. This vulnerability requires local system access. Note: this issue only affects Windows operating systems. This vulnerability affects Firefox ESR < 45.5 and Firefox < 50.

CVSS3: 5.5
0%
Низкий
около 8 лет назад
debian логотип
CVE-2016-5293

When the Mozilla Updater is run, if the Updater's log file in the work ...

CVSS3: 5.5
0%
Низкий
около 8 лет назад

Уязвимостей на страницу


Поделиться