Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154155156202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 691

debian логотип

CVE-2011-0064

больше 15 лет назад

The hb_buffer_ensure function in hb-buffer.c in HarfBuzz, as used in P ...

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2011-0064

больше 15 лет назад

The hb_buffer_ensure function in hb-buffer.c in HarfBuzz, as used in Pango 1.28.3, Firefox, and other products, does not verify that memory reallocations succeed, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or possibly execute arbitrary code via crafted OpenType font data that triggers use of an incorrect index.

CVSS2: 6.8
EPSS: Низкий
ubuntu логотип

CVE-2011-0064

больше 15 лет назад

The hb_buffer_ensure function in hb-buffer.c in HarfBuzz, as used in Pango 1.28.3, Firefox, and other products, does not verify that memory reallocations succeed, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or possibly execute arbitrary code via crafted OpenType font data that triggers use of an incorrect index.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2011-0062

больше 15 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 10
EPSS: Низкий
nvd логотип

CVE-2011-0062

больше 15 лет назад

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.6.x before 3.6.14 and Thunderbird 3.1.x before 3.1.8 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 10
EPSS: Низкий
debian логотип

CVE-2011-0061

больше 15 лет назад

Buffer overflow in Mozilla Firefox 3.6.x before 3.6.14, Thunderbird be ...

CVSS2: 9.3
EPSS: Низкий
nvd логотип

CVE-2011-0061

больше 15 лет назад

Buffer overflow in Mozilla Firefox 3.6.x before 3.6.14, Thunderbird before 3.1.8, and SeaMonkey before 2.0.12 might allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JPEG image.

CVSS2: 9.3
EPSS: Низкий
debian логотип

CVE-2011-0059

больше 15 лет назад

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox bef ...

CVSS2: 6.8
EPSS: Низкий
nvd логотип

CVE-2011-0059

больше 15 лет назад

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to hijack the authentication of arbitrary users for requests that were initiated by a plugin and received a 307 redirect to a page on a different web site.

CVSS2: 6.8
EPSS: Низкий
debian логотип

CVE-2011-0058

больше 15 лет назад

Buffer overflow in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6. ...

CVSS2: 10
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2011-0064

The hb_buffer_ensure function in hb-buffer.c in HarfBuzz, as used in P ...

CVSS2: 6.8
3%
Низкий
больше 15 лет назад
nvd логотип
CVE-2011-0064

The hb_buffer_ensure function in hb-buffer.c in HarfBuzz, as used in Pango 1.28.3, Firefox, and other products, does not verify that memory reallocations succeed, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or possibly execute arbitrary code via crafted OpenType font data that triggers use of an incorrect index.

CVSS2: 6.8
3%
Низкий
больше 15 лет назад
ubuntu логотип
CVE-2011-0064

The hb_buffer_ensure function in hb-buffer.c in HarfBuzz, as used in Pango 1.28.3, Firefox, and other products, does not verify that memory reallocations succeed, which allows remote attackers to cause a denial of service (NULL pointer dereference and application crash) or possibly execute arbitrary code via crafted OpenType font data that triggers use of an incorrect index.

CVSS2: 6.8
3%
Низкий
больше 15 лет назад
debian логотип
CVE-2011-0062

Multiple unspecified vulnerabilities in the browser engine in Mozilla ...

CVSS2: 10
4%
Низкий
больше 15 лет назад
nvd логотип
CVE-2011-0062

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.6.x before 3.6.14 and Thunderbird 3.1.x before 3.1.8 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS2: 10
4%
Низкий
больше 15 лет назад
debian логотип
CVE-2011-0061

Buffer overflow in Mozilla Firefox 3.6.x before 3.6.14, Thunderbird be ...

CVSS2: 9.3
5%
Низкий
больше 15 лет назад
nvd логотип
CVE-2011-0061

Buffer overflow in Mozilla Firefox 3.6.x before 3.6.14, Thunderbird before 3.1.8, and SeaMonkey before 2.0.12 might allow remote attackers to execute arbitrary code or cause a denial of service (application crash) via a crafted JPEG image.

CVSS2: 9.3
5%
Низкий
больше 15 лет назад
debian логотип
CVE-2011-0059

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox bef ...

CVSS2: 6.8
1%
Низкий
больше 15 лет назад
nvd логотип
CVE-2011-0059

Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, allows remote attackers to hijack the authentication of arbitrary users for requests that were initiated by a plugin and received a 307 redirect to a page on a different web site.

CVSS2: 6.8
1%
Низкий
больше 15 лет назад
debian логотип
CVE-2011-0058

Buffer overflow in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6. ...

CVSS2: 10
5%
Низкий
больше 15 лет назад

Уязвимостей на страницу


Поделиться