Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

debian логотип

CVE-2016-2792

больше 10 лет назад

The graphite2::Slot::getAttr function in Slot.cpp in Graphite 2 before ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-2792

больше 10 лет назад

The graphite2::Slot::getAttr function in Slot.cpp in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font, a different vulnerability than CVE-2016-2800.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-2791

больше 10 лет назад

The graphite2::GlyphCache::glyph function in Graphite 2 before 1.3.6, ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-2791

больше 10 лет назад

The graphite2::GlyphCache::glyph function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-2790

больше 10 лет назад

The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3 ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-2790

больше 10 лет назад

The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted Graphite smart font.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-1979

больше 10 лет назад

Use-after-free vulnerability in the PK11_ImportDERPrivateKeyInfoAndRet ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-1979

больше 10 лет назад

Use-after-free vulnerability in the PK11_ImportDERPrivateKeyInfoAndReturnKey function in Mozilla Network Security Services (NSS) before 3.21.1, as used in Mozilla Firefox before 45.0, allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted key data with DER encoding.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-1978

больше 10 лет назад

Use-after-free vulnerability in the ssl3_HandleECDHServerKeyExchange f ...

CVSS3: 7.3
EPSS: Низкий
nvd логотип

CVE-2016-1978

больше 10 лет назад

Use-after-free vulnerability in the ssl3_HandleECDHServerKeyExchange function in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, allows remote attackers to cause a denial of service or possibly have unspecified other impact by making an SSL (1) DHE or (2) ECDHE handshake at a time of high memory consumption.

CVSS3: 7.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2016-2792

The graphite2::Slot::getAttr function in Slot.cpp in Graphite 2 before ...

CVSS3: 8.8
2%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-2792

The graphite2::Slot::getAttr function in Slot.cpp in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font, a different vulnerability than CVE-2016-2800.

CVSS3: 8.8
2%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-2791

The graphite2::GlyphCache::glyph function in Graphite 2 before 1.3.6, ...

CVSS3: 8.8
2%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-2791

The graphite2::GlyphCache::glyph function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphite smart font.

CVSS3: 8.8
2%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-2790

The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3 ...

CVSS3: 8.8
2%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-2790

The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted Graphite smart font.

CVSS3: 8.8
2%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-1979

Use-after-free vulnerability in the PK11_ImportDERPrivateKeyInfoAndRet ...

CVSS3: 8.8
2%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-1979

Use-after-free vulnerability in the PK11_ImportDERPrivateKeyInfoAndReturnKey function in Mozilla Network Security Services (NSS) before 3.21.1, as used in Mozilla Firefox before 45.0, allows remote attackers to cause a denial of service or possibly have unspecified other impact via crafted key data with DER encoding.

CVSS3: 8.8
2%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-1978

Use-after-free vulnerability in the ssl3_HandleECDHServerKeyExchange f ...

CVSS3: 7.3
2%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-1978

Use-after-free vulnerability in the ssl3_HandleECDHServerKeyExchange function in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, allows remote attackers to cause a denial of service or possibly have unspecified other impact by making an SSL (1) DHE or (2) ECDHE handshake at a time of high memory consumption.

CVSS3: 7.3
2%
Низкий
больше 10 лет назад

Уязвимостей на страницу


Поделиться