Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

debian логотип

CVE-2013-0800

больше 13 лет назад

Integer signedness error in the pixman_fill_sse2 function in pixman-ss ...

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2013-0800

больше 13 лет назад

Integer signedness error in the pixman_fill_sse2 function in pixman-sse2.c in Pixman, as distributed with Cairo and used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to execute arbitrary code via crafted values that trigger attempted use of a (1) negative box boundary or (2) negative box size, leading to an out-of-bounds write operation.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2013-0799

больше 13 лет назад

Buffer overflow in the Mozilla Maintenance Service in Mozilla Firefox ...

CVSS2: 7.2
EPSS: Низкий
nvd логотип

CVE-2013-0799

больше 13 лет назад

Buffer overflow in the Mozilla Maintenance Service in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, and Thunderbird ESR 17.x before 17.0.5 on Windows allows local users to gain privileges via crafted arguments.

CVSS2: 7.2
EPSS: Низкий
debian логотип

CVE-2013-0798

больше 13 лет назад

Mozilla Firefox before 20.0 on Android uses world-writable and world-r ...

CVSS2: 4.3
EPSS: Низкий
nvd логотип

CVE-2013-0798

больше 13 лет назад

Mozilla Firefox before 20.0 on Android uses world-writable and world-readable permissions for the app_tmp installation directory in the local filesystem, which allows attackers to modify add-ons before installation via an application that leverages the time window during which app_tmp is used.

CVSS2: 4.3
EPSS: Низкий
debian логотип

CVE-2013-0797

больше 13 лет назад

Untrusted search path vulnerability in the Mozilla Updater in Mozilla ...

CVSS2: 6.9
EPSS: Низкий
nvd логотип

CVE-2013-0797

больше 13 лет назад

Untrusted search path vulnerability in the Mozilla Updater in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, and SeaMonkey before 2.17 allows local users to gain privileges via a Trojan horse DLL file in an unspecified directory.

CVSS2: 6.9
EPSS: Низкий
debian логотип

CVE-2013-0796

больше 13 лет назад

The WebGL subsystem in Mozilla Firefox before 20.0, Firefox ESR 17.x b ...

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2013-0796

больше 13 лет назад

The WebGL subsystem in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, and SeaMonkey before 2.17 on Linux does not properly interact with Mesa drivers, which allows remote attackers to execute arbitrary code or cause a denial of service (free of unallocated memory) via unspecified vectors.

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2013-0800

Integer signedness error in the pixman_fill_sse2 function in pixman-ss ...

CVSS2: 6.8
4%
Низкий
больше 13 лет назад
nvd логотип
CVE-2013-0800

Integer signedness error in the pixman_fill_sse2 function in pixman-sse2.c in Pixman, as distributed with Cairo and used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, SeaMonkey before 2.17, and other products, allows remote attackers to execute arbitrary code via crafted values that trigger attempted use of a (1) negative box boundary or (2) negative box size, leading to an out-of-bounds write operation.

CVSS2: 6.8
4%
Низкий
больше 13 лет назад
debian логотип
CVE-2013-0799

Buffer overflow in the Mozilla Maintenance Service in Mozilla Firefox ...

CVSS2: 7.2
0%
Низкий
больше 13 лет назад
nvd логотип
CVE-2013-0799

Buffer overflow in the Mozilla Maintenance Service in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, and Thunderbird ESR 17.x before 17.0.5 on Windows allows local users to gain privileges via crafted arguments.

CVSS2: 7.2
0%
Низкий
больше 13 лет назад
debian логотип
CVE-2013-0798

Mozilla Firefox before 20.0 on Android uses world-writable and world-r ...

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
nvd логотип
CVE-2013-0798

Mozilla Firefox before 20.0 on Android uses world-writable and world-readable permissions for the app_tmp installation directory in the local filesystem, which allows attackers to modify add-ons before installation via an application that leverages the time window during which app_tmp is used.

CVSS2: 4.3
1%
Низкий
больше 13 лет назад
debian логотип
CVE-2013-0797

Untrusted search path vulnerability in the Mozilla Updater in Mozilla ...

CVSS2: 6.9
0%
Низкий
больше 13 лет назад
nvd логотип
CVE-2013-0797

Untrusted search path vulnerability in the Mozilla Updater in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, and SeaMonkey before 2.17 allows local users to gain privileges via a Trojan horse DLL file in an unspecified directory.

CVSS2: 6.9
0%
Низкий
больше 13 лет назад
debian логотип
CVE-2013-0796

The WebGL subsystem in Mozilla Firefox before 20.0, Firefox ESR 17.x b ...

CVSS2: 10
8%
Низкий
больше 13 лет назад
nvd логотип
CVE-2013-0796

The WebGL subsystem in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, and SeaMonkey before 2.17 on Linux does not properly interact with Mesa drivers, which allows remote attackers to execute arbitrary code or cause a denial of service (free of unallocated memory) via unspecified vectors.

CVSS2: 10
8%
Низкий
больше 13 лет назад

Уязвимостей на страницу


Поделиться