Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

redhat логотип

CVE-2014-1594

больше 11 лет назад

Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 might allow remote attackers to execute arbitrary code by leveraging an incorrect cast from the BasicThebesLayer data type to the BasicContainerLayer data type.

CVSS2: 5.1
EPSS: Низкий
redhat логотип

CVE-2014-1587

больше 11 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 6.8
EPSS: Низкий
redhat логотип

CVE-2014-1589

больше 11 лет назад

Mozilla Firefox before 34.0 and SeaMonkey before 2.31 provide stylesheets with an incorrect primary namespace, which allows remote attackers to bypass intended access restrictions via an XBL binding.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2014-6492

почти 12 лет назад

Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when ...

CVSS2: 7.6
EPSS: Низкий
nvd логотип

CVE-2014-6492

почти 12 лет назад

Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

CVSS2: 7.6
EPSS: Низкий
ubuntu логотип

CVE-2014-6492

почти 12 лет назад

Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

CVSS2: 7.6
EPSS: Низкий
debian логотип

CVE-2014-1586

почти 12 лет назад

content/base/src/nsDocument.cpp in Mozilla Firefox before 33.0, Firefo ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2014-1586

почти 12 лет назад

content/base/src/nsDocument.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not consider whether WebRTC video sharing is occurring, which allows remote attackers to obtain sensitive information from the local camera in certain IFRAME situations by maintaining a session after the user temporarily navigates away.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2014-1585

почти 12 лет назад

The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozi ...

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2014-1585

почти 12 лет назад

The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not properly recognize Stop Sharing actions for videos in IFRAME elements, which allows remote attackers to obtain sensitive information from the local camera by maintaining a session after the user tries to discontinue streaming.

CVSS2: 5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
redhat логотип
CVE-2014-1594

Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 might allow remote attackers to execute arbitrary code by leveraging an incorrect cast from the BasicThebesLayer data type to the BasicContainerLayer data type.

CVSS2: 5.1
3%
Низкий
больше 11 лет назад
redhat логотип
CVE-2014-1587

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 6.8
4%
Низкий
больше 11 лет назад
redhat логотип
CVE-2014-1589

Mozilla Firefox before 34.0 and SeaMonkey before 2.31 provide stylesheets with an incorrect primary namespace, which allows remote attackers to bypass intended access restrictions via an XBL binding.

CVSS2: 4.3
2%
Низкий
больше 11 лет назад
debian логотип
CVE-2014-6492

Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when ...

CVSS2: 7.6
4%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-6492

Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

CVSS2: 7.6
4%
Низкий
почти 12 лет назад
ubuntu логотип
CVE-2014-6492

Unspecified vulnerability in Oracle Java SE 6u81, 7u67, and 8u20, when running on Firefox, allows remote attackers to affect confidentiality, integrity, and availability via unknown vectors related to Deployment.

CVSS2: 7.6
4%
Низкий
почти 12 лет назад
debian логотип
CVE-2014-1586

content/base/src/nsDocument.cpp in Mozilla Firefox before 33.0, Firefo ...

CVSS2: 5
3%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-1586

content/base/src/nsDocument.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not consider whether WebRTC video sharing is occurring, which allows remote attackers to obtain sensitive information from the local camera in certain IFRAME situations by maintaining a session after the user temporarily navigates away.

CVSS2: 5
3%
Низкий
почти 12 лет назад
debian логотип
CVE-2014-1585

The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozi ...

CVSS2: 5
3%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-1585

The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not properly recognize Stop Sharing actions for videos in IFRAME elements, which allows remote attackers to obtain sensitive information from the local camera by maintaining a session after the user tries to discontinue streaming.

CVSS2: 5
3%
Низкий
почти 12 лет назад

Уязвимостей на страницу


Поделиться