Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 337
CVE-2014-1539
Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript code that produces a fake cursor image.
CVE-2014-1538
Use-after-free vulnerability in the nsTextEditRules::CreateMozBR funct ...
CVE-2014-1538
Use-after-free vulnerability in the nsTextEditRules::CreateMozBR function in Mozilla Firefox before 30.0, Firefox ESR 24.x before 24.6, and Thunderbird before 24.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.
CVE-2014-1537
Use-after-free vulnerability in the mozilla::dom::workers::WorkerPriva ...
CVE-2014-1537
Use-after-free vulnerability in the mozilla::dom::workers::WorkerPrivateParent function in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.
CVE-2014-1536
The PropertyProvider::FindJustificationRange function in Mozilla Firef ...
CVE-2014-1536
The PropertyProvider::FindJustificationRange function in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via unspecified vectors.
CVE-2014-1534
Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2014-1534
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 30.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
CVE-2014-1533
Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2014-1539 Mozilla Firefox before 30.0 and Thunderbird through 24.6 on OS X do not ensure visibility of the cursor after interaction with a Flash object and a DIV element, which makes it easier for remote attackers to conduct clickjacking attacks via JavaScript code that produces a fake cursor image. | CVSS2: 5 | 2% Низкий | около 12 лет назад | |
CVE-2014-1538 Use-after-free vulnerability in the nsTextEditRules::CreateMozBR funct ... | CVSS2: 10 | 5% Низкий | около 12 лет назад | |
CVE-2014-1538 Use-after-free vulnerability in the nsTextEditRules::CreateMozBR function in Mozilla Firefox before 30.0, Firefox ESR 24.x before 24.6, and Thunderbird before 24.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors. | CVSS2: 10 | 5% Низкий | около 12 лет назад | |
CVE-2014-1537 Use-after-free vulnerability in the mozilla::dom::workers::WorkerPriva ... | CVSS2: 10 | 5% Низкий | около 12 лет назад | |
CVE-2014-1537 Use-after-free vulnerability in the mozilla::dom::workers::WorkerPrivateParent function in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors. | CVSS2: 10 | 5% Низкий | около 12 лет назад | |
CVE-2014-1536 The PropertyProvider::FindJustificationRange function in Mozilla Firef ... | CVSS2: 10 | 6% Низкий | около 12 лет назад | |
CVE-2014-1536 The PropertyProvider::FindJustificationRange function in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via unspecified vectors. | CVSS2: 10 | 6% Низкий | около 12 лет назад | |
CVE-2014-1534 Multiple unspecified vulnerabilities in the browser engine in Mozilla ... | CVSS2: 10 | 6% Низкий | около 12 лет назад | |
CVE-2014-1534 Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 30.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors. | CVSS2: 10 | 6% Низкий | около 12 лет назад | |
CVE-2014-1533 Multiple unspecified vulnerabilities in the browser engine in Mozilla ... | CVSS2: 10 | 6% Низкий | около 12 лет назад |
Уязвимостей на страницу