Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Количество 15 220
CVE-2024-3862
The MarkStack assignment operator, part of the JavaScript engine, could access uninitialized memory if it were used in a self-assignment. This vulnerability affects Firefox < 125.
CVE-2024-3862
The MarkStack assignment operator, part of the JavaScript engine, coul ...
CVE-2024-3861
If an AlignedBuffer were assigned to itself, the subsequent self-move could result in an incorrect reference count and later use-after-free. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
CVE-2024-3861
If an AlignedBuffer were assigned to itself, the subsequent self-move ...
CVE-2024-3860
An out-of-memory condition during object initialization could result in an empty shape list. If the JIT subsequently traced the object it would crash. This vulnerability affects Firefox < 125.
CVE-2024-3860
An out-of-memory condition during object initialization could result i ...
CVE-2024-3859
On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10.
CVE-2024-3859
On 32-bit versions there were integer-overflows that led to an out-of- ...
CVE-2024-3858
It was possible to mutate a JavaScript object so that the JIT could crash while tracing it. This vulnerability affects Firefox < 125.
CVE-2024-3858
It was possible to mutate a JavaScript object so that the JIT could cr ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2024-3862 The MarkStack assignment operator, part of the JavaScript engine, could access uninitialized memory if it were used in a self-assignment. This vulnerability affects Firefox < 125. | CVSS3: 5.3 | 0% Низкий | больше 1 года назад | |
CVE-2024-3862 The MarkStack assignment operator, part of the JavaScript engine, coul ... | CVSS3: 5.3 | 0% Низкий | больше 1 года назад | |
CVE-2024-3861 If an AlignedBuffer were assigned to itself, the subsequent self-move could result in an incorrect reference count and later use-after-free. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10. | CVSS3: 4 | 0% Низкий | больше 1 года назад | |
CVE-2024-3861 If an AlignedBuffer were assigned to itself, the subsequent self-move ... | CVSS3: 4 | 0% Низкий | больше 1 года назад | |
CVE-2024-3860 An out-of-memory condition during object initialization could result in an empty shape list. If the JIT subsequently traced the object it would crash. This vulnerability affects Firefox < 125. | CVSS3: 6.2 | 0% Низкий | больше 1 года назад | |
CVE-2024-3860 An out-of-memory condition during object initialization could result i ... | CVSS3: 6.2 | 0% Низкий | больше 1 года назад | |
CVE-2024-3859 On 32-bit versions there were integer-overflows that led to an out-of-bounds-read that potentially could be triggered by a malformed OpenType font. This vulnerability affects Firefox < 125, Firefox ESR < 115.10, and Thunderbird < 115.10. | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
CVE-2024-3859 On 32-bit versions there were integer-overflows that led to an out-of- ... | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
CVE-2024-3858 It was possible to mutate a JavaScript object so that the JIT could crash while tracing it. This vulnerability affects Firefox < 125. | CVSS3: 7.5 | 0% Низкий | больше 1 года назад | |
CVE-2024-3858 It was possible to mutate a JavaScript object so that the JIT could cr ... | CVSS3: 7.5 | 0% Низкий | больше 1 года назад |
Уязвимостей на страницу