Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 304

debian логотип

CVE-2011-3062

больше 14 лет назад

Off-by-one error in the OpenType Sanitizer in Google Chrome before 18. ...

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2011-3062

больше 14 лет назад

Off-by-one error in the OpenType Sanitizer in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted OpenType file.

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2012-0464

больше 14 лет назад

Use-after-free vulnerability in the browser engine in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 allows remote attackers to execute arbitrary code via vectors involving an empty argument to the array.join function in conjunction with the triggering of garbage collection.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2012-0464

больше 14 лет назад

Use-after-free vulnerability in the browser engine in Mozilla Firefox ...

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2012-0463

больше 14 лет назад

The nsWindow implementation in the browser engine in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 does not check the validity of an instance after event dispatching, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors, as demonstrated by Mobile Firefox on Android.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2012-0463

больше 14 лет назад

The nsWindow implementation in the browser engine in Mozilla Firefox b ...

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2012-0462

больше 14 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2012-0462

больше 14 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 7.5
EPSS: Низкий
nvd логотип

CVE-2012-0461

больше 14 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 7.5
EPSS: Низкий
debian логотип

CVE-2012-0461

больше 14 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2011-3062

Off-by-one error in the OpenType Sanitizer in Google Chrome before 18. ...

CVSS2: 6.8
2%
Низкий
больше 14 лет назад
ubuntu логотип
CVE-2011-3062

Off-by-one error in the OpenType Sanitizer in Google Chrome before 18.0.1025.142 allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted OpenType file.

CVSS2: 6.8
2%
Низкий
больше 14 лет назад
nvd логотип
CVE-2012-0464

Use-after-free vulnerability in the browser engine in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 allows remote attackers to execute arbitrary code via vectors involving an empty argument to the array.join function in conjunction with the triggering of garbage collection.

CVSS2: 7.5
4%
Низкий
больше 14 лет назад
debian логотип
CVE-2012-0464

Use-after-free vulnerability in the browser engine in Mozilla Firefox ...

CVSS2: 7.5
4%
Низкий
больше 14 лет назад
nvd логотип
CVE-2012-0463

The nsWindow implementation in the browser engine in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 does not check the validity of an instance after event dispatching, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors, as demonstrated by Mobile Firefox on Android.

CVSS2: 7.5
4%
Низкий
больше 14 лет назад
debian логотип
CVE-2012-0463

The nsWindow implementation in the browser engine in Mozilla Firefox b ...

CVSS2: 7.5
4%
Низкий
больше 14 лет назад
nvd логотип
CVE-2012-0462

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 7.5
4%
Низкий
больше 14 лет назад
debian логотип
CVE-2012-0462

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 7.5
4%
Низкий
больше 14 лет назад
nvd логотип
CVE-2012-0461

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x before 10.0.3, Thunderbird before 3.1.20 and 5.0 through 10.0, Thunderbird ESR 10.x before 10.0.3, and SeaMonkey before 2.8 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 7.5
3%
Низкий
больше 14 лет назад
debian логотип
CVE-2012-0461

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 7.5
3%
Низкий
больше 14 лет назад

Уязвимостей на страницу


Поделиться