Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

debian логотип

CVE-2014-1578

почти 12 лет назад

The get_tile function in Mozilla Firefox before 33.0, Firefox ESR 31.x ...

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2014-1578

почти 12 лет назад

The get_tile function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly execute arbitrary code via WebM frames with invalid tile sizes that are improperly handled in buffering operations during video playback.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2014-1577

почти 12 лет назад

The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the ...

CVSS2: 6.4
EPSS: Низкий
nvd логотип

CVE-2014-1577

почти 12 лет назад

The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read, memory corruption, and application crash) via an invalid custom waveform that triggers a calculation of a negative frequency value.

CVSS2: 6.4
EPSS: Низкий
debian логотип

CVE-2014-1576

почти 12 лет назад

Heap-based buffer overflow in the nsTransformedTextRun function in Moz ...

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2014-1576

почти 12 лет назад

Heap-based buffer overflow in the nsTransformedTextRun function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via Cascading Style Sheets (CSS) token sequences that trigger changes to capitalization style.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2014-1575

почти 12 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2014-1575

почти 12 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 33.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to improper interaction between threading and garbage collection in the GCRuntime::triggerGC function in js/src/jsgc.cpp, and unknown other vectors.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2014-1574

почти 12 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2014-1574

почти 12 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2014-1578

The get_tile function in Mozilla Firefox before 33.0, Firefox ESR 31.x ...

CVSS2: 7.5
4%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-1578

The get_tile function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly execute arbitrary code via WebM frames with invalid tile sizes that are improperly handled in buffering operations during video playback.

CVSS2: 7.5
4%
Низкий
почти 12 лет назад
debian логотип
CVE-2014-1577

The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the ...

CVSS2: 6.4
3%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-1577

The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read, memory corruption, and application crash) via an invalid custom waveform that triggers a calculation of a negative frequency value.

CVSS2: 6.4
3%
Низкий
почти 12 лет назад
debian логотип
CVE-2014-1576

Heap-based buffer overflow in the nsTransformedTextRun function in Moz ...

CVSS2: 7.5
5%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-1576

Heap-based buffer overflow in the nsTransformedTextRun function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via Cascading Style Sheets (CSS) token sequences that trigger changes to capitalization style.

CVSS2: 7.5
5%
Низкий
почти 12 лет назад
debian логотип
CVE-2014-1575

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 7.5
5%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-1575

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 33.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to improper interaction between threading and garbage collection in the GCRuntime::triggerGC function in js/src/jsgc.cpp, and unknown other vectors.

CVSS2: 7.5
5%
Низкий
почти 12 лет назад
debian логотип
CVE-2014-1574

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 7.5
4%
Низкий
почти 12 лет назад
nvd логотип
CVE-2014-1574

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 7.5
4%
Низкий
почти 12 лет назад

Уязвимостей на страницу


Поделиться