Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

redhat логотип

CVE-2015-2712

больше 11 лет назад

The asm.js implementation in Mozilla Firefox before 38.0 does not properly determine heap lengths during identification of cases in which bounds checking may be safely skipped, which allows remote attackers to trigger out-of-bounds write operations and possibly execute arbitrary code, or trigger out-of-bounds read operations and possibly obtain sensitive information from process memory, via crafted JavaScript.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2015-2708

больше 11 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2015-2717

больше 11 лет назад

Integer overflow in libstagefright in Mozilla Firefox before 38.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and out-of-bounds read) via an MP4 video file containing invalid metadata.

CVSS2: 5.1
EPSS: Низкий
fstec логотип

BDU:2021-03335

больше 11 лет назад

Уязвимость браузера Mozilla Firefox, вызванная переполнением буфера, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0921-1

больше 11 лет назад

Security update for gstreamer-0_10-plugins-bad

EPSS: Низкий
debian логотип

CVE-2015-2706

больше 11 лет назад

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent functio ...

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2015-2706

больше 11 лет назад

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2015-2706

больше 11 лет назад

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

CVSS2: 6.8
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2015:0942-1

больше 11 лет назад

Security update for gstreamer-0_10-plugins-bad

EPSS: Низкий
redhat логотип

CVE-2015-2706

больше 11 лет назад

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

CVSS2: 6.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
redhat логотип
CVE-2015-2712

The asm.js implementation in Mozilla Firefox before 38.0 does not properly determine heap lengths during identification of cases in which bounds checking may be safely skipped, which allows remote attackers to trigger out-of-bounds write operations and possibly execute arbitrary code, or trigger out-of-bounds read operations and possibly obtain sensitive information from process memory, via crafted JavaScript.

CVSS2: 6.8
4%
Низкий
больше 11 лет назад
redhat логотип
CVE-2015-2708

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 6.8
5%
Низкий
больше 11 лет назад
redhat логотип
CVE-2015-2717

Integer overflow in libstagefright in Mozilla Firefox before 38.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and out-of-bounds read) via an MP4 video file containing invalid metadata.

CVSS2: 5.1
4%
Низкий
больше 11 лет назад
fstec логотип
BDU:2021-03335

Уязвимость браузера Mozilla Firefox, вызванная переполнением буфера, позволяющая нарушителю выполнить произвольный код

CVSS3: 7.3
7%
Низкий
больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0921-1

Security update for gstreamer-0_10-plugins-bad

5%
Низкий
больше 11 лет назад
debian логотип
CVE-2015-2706

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent functio ...

CVSS2: 6.8
3%
Низкий
больше 11 лет назад
nvd логотип
CVE-2015-2706

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

CVSS2: 6.8
3%
Низкий
больше 11 лет назад
ubuntu логотип
CVE-2015-2706

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

CVSS2: 6.8
3%
Низкий
больше 11 лет назад
suse-cvrf логотип
SUSE-SU-2015:0942-1

Security update for gstreamer-0_10-plugins-bad

5%
Низкий
больше 11 лет назад
redhat логотип
CVE-2015-2706

Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.

CVSS2: 6.8
3%
Низкий
больше 11 лет назад

Уязвимостей на страницу


Поделиться