Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Количество 15 220
CVE-2024-6605
Firefox Android allowed immediate interaction with permission prompts. ...
CVE-2024-6604
Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
CVE-2024-6604
Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thu ...
CVE-2024-6603
In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
CVE-2024-6603
In an out-of-memory scenario an allocation could fail but free would h ...
CVE-2024-6602
A mismatch between allocator and deallocator could have led to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
CVE-2024-6602
A mismatch between allocator and deallocator could have led to memory ...
CVE-2024-6601
A race condition could lead to a cross-origin container obtaining permissions of the top-level origin. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
CVE-2024-6601
A race condition could lead to a cross-origin container obtaining perm ...
CVE-2024-6600
Due to large allocation checks in Angle for GLSL shaders being too lenient an out-of-bounds access could occur when allocating more than 8192 ints in private shader memory on macOS. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2024-6605 Firefox Android allowed immediate interaction with permission prompts. ... | CVSS3: 8.8 | 0% Низкий | больше 1 года назад | |
CVE-2024-6604 Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128. | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2024-6604 Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thu ... | CVSS3: 7.5 | 1% Низкий | больше 1 года назад | |
CVE-2024-6603 In an out-of-memory scenario an allocation could fail but free would have been called on the pointer afterwards leading to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128. | CVSS3: 7.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-6603 In an out-of-memory scenario an allocation could fail but free would h ... | CVSS3: 7.4 | 0% Низкий | больше 1 года назад | |
CVE-2024-6602 A mismatch between allocator and deallocator could have led to memory corruption. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128. | CVSS3: 9.8 | 1% Низкий | больше 1 года назад | |
CVE-2024-6602 A mismatch between allocator and deallocator could have led to memory ... | CVSS3: 9.8 | 1% Низкий | больше 1 года назад | |
CVE-2024-6601 A race condition could lead to a cross-origin container obtaining permissions of the top-level origin. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128. | CVSS3: 4.7 | 0% Низкий | больше 1 года назад | |
CVE-2024-6601 A race condition could lead to a cross-origin container obtaining perm ... | CVSS3: 4.7 | 0% Низкий | больше 1 года назад | |
CVE-2024-6600 Due to large allocation checks in Angle for GLSL shaders being too lenient an out-of-bounds access could occur when allocating more than 8192 ints in private shader memory on macOS. This vulnerability affects Firefox < 128, Firefox ESR < 115.13, Thunderbird < 115.13, and Thunderbird < 128. | CVSS3: 6.3 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу