Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 691
GHSA-gjwv-rvwj-p62j
Incorrect boundary conditions in the Web Audio component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.
GHSA-3qgm-jcxp-m9m6
Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.
GHSA-cgrc-pwqf-64v8
Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.
GHSA-vxjv-c6cq-74m6
Mitigation bypass in the Networking: Cache component. This vulnerability affects Firefox < 148 and Firefox ESR < 140.8.
GHSA-h79p-mfpr-8qm4
Use-after-free in the Graphics: ImageLib component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.
GHSA-7cfj-7vv8-r64h
Information disclosure, mitigation bypass in the Settings UI component. This vulnerability affects Firefox < 148.
GHSA-hwjj-g6g7-p8cf
Uninitialized memory in the Graphics: Text component. This vulnerability affects Firefox < 148.
GHSA-48q6-99pr-mcvm
Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8.
GHSA-wcpx-2xqg-ff43
Spoofing issue in the WebAuthn component in Firefox for Android. This vulnerability affects Firefox < 148.
GHSA-3922-j2hh-9qcf
Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-gjwv-rvwj-p62j Incorrect boundary conditions in the Web Audio component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8. | CVSS3: 9.8 | 1% Низкий | 7 месяцев назад | |
GHSA-3qgm-jcxp-m9m6 Sandbox escape due to incorrect boundary conditions in the DOM: Core & HTML component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8. | CVSS3: 10 | 0% Низкий | 7 месяцев назад | |
GHSA-cgrc-pwqf-64v8 Incorrect boundary conditions in the Audio/Video: GMP component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8. | CVSS3: 9.8 | 0% Низкий | 7 месяцев назад | |
GHSA-vxjv-c6cq-74m6 Mitigation bypass in the Networking: Cache component. This vulnerability affects Firefox < 148 and Firefox ESR < 140.8. | CVSS3: 9.8 | 0% Низкий | 7 месяцев назад | |
GHSA-h79p-mfpr-8qm4 Use-after-free in the Graphics: ImageLib component. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8. | CVSS3: 9.8 | 0% Низкий | 7 месяцев назад | |
GHSA-7cfj-7vv8-r64h Information disclosure, mitigation bypass in the Settings UI component. This vulnerability affects Firefox < 148. | CVSS3: 7.5 | 0% Низкий | 7 месяцев назад | |
GHSA-hwjj-g6g7-p8cf Uninitialized memory in the Graphics: Text component. This vulnerability affects Firefox < 148. | CVSS3: 9.1 | 0% Низкий | 7 месяцев назад | |
GHSA-48q6-99pr-mcvm Memory safety bugs present in Firefox ESR 115.32, Firefox ESR 140.7, Thunderbird ESR 140.7, Firefox 147 and Thunderbird 147. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 148, Firefox ESR < 115.33, and Firefox ESR < 140.8. | CVSS3: 9.8 | 0% Низкий | 7 месяцев назад | |
GHSA-wcpx-2xqg-ff43 Spoofing issue in the WebAuthn component in Firefox for Android. This vulnerability affects Firefox < 148. | CVSS3: 9.8 | 0% Низкий | 7 месяцев назад | |
GHSA-3922-j2hh-9qcf Use-after-free in the JavaScript: WebAssembly component. This vulnerability affects Firefox < 148. | CVSS3: 5.4 | 0% Низкий | 7 месяцев назад |
Уязвимостей на страницу