Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 337
CVE-2015-7222
Integer underflow in the Metadata::setData function in MetaData.cpp in libstagefright in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect memory allocation and application crash) via an MP4 video file with crafted covr metadata that triggers a buffer overflow.
CVE-2015-7221
Buffer overflow in the nsDeque::GrowCapacity function in xpcom/glue/ns ...
CVE-2015-7221
Buffer overflow in the nsDeque::GrowCapacity function in xpcom/glue/nsDeque.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a deque size change.
CVE-2015-7220
Buffer overflow in the XDRBuffer::grow function in js/src/vm/Xdr.cpp i ...
CVE-2015-7220
Buffer overflow in the XDRBuffer::grow function in js/src/vm/Xdr.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code.
CVE-2015-7219
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote ...
CVE-2015-7219
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a malformed PushPromise frame that triggers decompressed-buffer length miscalculation and incorrect memory allocation.
CVE-2015-7218
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote ...
CVE-2015-7218
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a single-byte header frame that triggers incorrect memory allocation.
CVE-2015-7217
The gdk-pixbuf configuration in Mozilla Firefox before 43.0 on Linux G ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2015-7222 Integer underflow in the Metadata::setData function in MetaData.cpp in libstagefright in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary code or cause a denial of service (incorrect memory allocation and application crash) via an MP4 video file with crafted covr metadata that triggers a buffer overflow. | CVSS2: 6.8 | 4% Низкий | больше 10 лет назад | |
CVE-2015-7221 Buffer overflow in the nsDeque::GrowCapacity function in xpcom/glue/ns ... | CVSS2: 10 | 5% Низкий | больше 10 лет назад | |
CVE-2015-7221 Buffer overflow in the nsDeque::GrowCapacity function in xpcom/glue/nsDeque.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a deque size change. | CVSS2: 10 | 5% Низкий | больше 10 лет назад | |
CVE-2015-7220 Buffer overflow in the XDRBuffer::grow function in js/src/vm/Xdr.cpp i ... | CVSS2: 10 | 5% Низкий | больше 10 лет назад | |
CVE-2015-7220 Buffer overflow in the XDRBuffer::grow function in js/src/vm/Xdr.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code. | CVSS2: 10 | 5% Низкий | больше 10 лет назад | |
CVE-2015-7219 The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote ... | CVSS2: 5 | 3% Низкий | больше 10 лет назад | |
CVE-2015-7219 The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a malformed PushPromise frame that triggers decompressed-buffer length miscalculation and incorrect memory allocation. | CVSS2: 5 | 3% Низкий | больше 10 лет назад | |
CVE-2015-7218 The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote ... | CVSS2: 5 | 3% Низкий | больше 10 лет назад | |
CVE-2015-7218 The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a single-byte header frame that triggers incorrect memory allocation. | CVSS2: 5 | 3% Низкий | больше 10 лет назад | |
CVE-2015-7217 The gdk-pixbuf configuration in Mozilla Firefox before 43.0 on Linux G ... | CVSS2: 4.3 | 3% Низкий | больше 10 лет назад |
Уязвимостей на страницу