Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

debian логотип

CVE-2016-1977

больше 10 лет назад

The Machine::Code::decoder::analysis::set_ref function in Graphite 2 b ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-1977

больше 10 лет назад

The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via a crafted Graphite smart font.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-1976

больше 10 лет назад

Use-after-free vulnerability in the DesktopDisplayDevice class in the ...

CVSS3: 5.5
EPSS: Низкий
nvd логотип

CVE-2016-1976

больше 10 лет назад

Use-after-free vulnerability in the DesktopDisplayDevice class in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

CVSS3: 5.5
EPSS: Низкий
debian логотип

CVE-2016-1975

больше 10 лет назад

Multiple race conditions in dom/media/systemservices/CamerasChild.cpp ...

CVSS3: 6.3
EPSS: Низкий
nvd логотип

CVE-2016-1975

больше 10 лет назад

Multiple race conditions in dom/media/systemservices/CamerasChild.cpp in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

CVSS3: 6.3
EPSS: Низкий
debian логотип

CVE-2016-1974

больше 10 лет назад

The nsScannerString::AppendUnicodeTo function in Mozilla Firefox befor ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-1974

больше 10 лет назад

The nsScannerString::AppendUnicodeTo function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 does not verify that memory allocation succeeds, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via crafted Unicode data in an HTML, XML, or SVG document.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2016-1973

больше 10 лет назад

Race condition in the GetStaticInstance function in the WebRTC impleme ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2016-1973

больше 10 лет назад

Race condition in the GetStaticInstance function in the WebRTC implementation in Mozilla Firefox before 45.0 might allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via unspecified vectors.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2016-1977

The Machine::Code::decoder::analysis::set_ref function in Graphite 2 b ...

CVSS3: 8.8
3%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-1977

The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to execute arbitrary code or cause a denial of service (stack memory corruption) via a crafted Graphite smart font.

CVSS3: 8.8
3%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-1976

Use-after-free vulnerability in the DesktopDisplayDevice class in the ...

CVSS3: 5.5
1%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-1976

Use-after-free vulnerability in the DesktopDisplayDevice class in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.

CVSS3: 5.5
1%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-1975

Multiple race conditions in dom/media/systemservices/CamerasChild.cpp ...

CVSS3: 6.3
1%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-1975

Multiple race conditions in dom/media/systemservices/CamerasChild.cpp in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors.

CVSS3: 6.3
1%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-1974

The nsScannerString::AppendUnicodeTo function in Mozilla Firefox befor ...

CVSS3: 8.8
3%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-1974

The nsScannerString::AppendUnicodeTo function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 does not verify that memory allocation succeeds, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via crafted Unicode data in an HTML, XML, or SVG document.

CVSS3: 8.8
3%
Низкий
больше 10 лет назад
debian логотип
CVE-2016-1973

Race condition in the GetStaticInstance function in the WebRTC impleme ...

CVSS3: 8.8
3%
Низкий
больше 10 лет назад
nvd логотип
CVE-2016-1973

Race condition in the GetStaticInstance function in the WebRTC implementation in Mozilla Firefox before 45.0 might allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via unspecified vectors.

CVSS3: 8.8
3%
Низкий
больше 10 лет назад

Уязвимостей на страницу


Поделиться