Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Количество 15 225
CVE-2023-4050
In some cases, an untrusted input stream was copied to a stack buffer ...
CVE-2023-4049
Race conditions in reference counting code were found through code inspection. These could have resulted in potentially exploitable use-after-free vulnerabilities. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
CVE-2023-4049
Race conditions in reference counting code were found through code ins ...
CVE-2023-4048
An out-of-bounds read could have led to an exploitable crash when parsing HTML with DOMParser in low memory situations. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
CVE-2023-4048
An out-of-bounds read could have led to an exploitable crash when pars ...
CVE-2023-4047
A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
CVE-2023-4047
A bug in popup notifications delay calculation could have made it poss ...
CVE-2023-4046
In some circumstances, a stale value could have been used for a global variable in WASM JIT analysis. This resulted in incorrect compilation and a potentially exploitable crash in the content process. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
CVE-2023-4046
In some circumstances, a stale value could have been used for a global ...
CVE-2023-4045
Offscreen Canvas did not properly track cross-origin tainting, which could have been used to access image data from another site in violation of same-origin policy. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2023-4050 In some cases, an untrusted input stream was copied to a stack buffer ... | CVSS3: 7.5 | 8% Низкий | больше 2 лет назад | |
CVE-2023-4049 Race conditions in reference counting code were found through code inspection. These could have resulted in potentially exploitable use-after-free vulnerabilities. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1. | CVSS3: 5.9 | 0% Низкий | больше 2 лет назад | |
CVE-2023-4049 Race conditions in reference counting code were found through code ins ... | CVSS3: 5.9 | 0% Низкий | больше 2 лет назад | |
CVE-2023-4048 An out-of-bounds read could have led to an exploitable crash when parsing HTML with DOMParser in low memory situations. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1. | CVSS3: 7.5 | 0% Низкий | больше 2 лет назад | |
CVE-2023-4048 An out-of-bounds read could have led to an exploitable crash when pars ... | CVSS3: 7.5 | 0% Низкий | больше 2 лет назад | |
CVE-2023-4047 A bug in popup notifications delay calculation could have made it possible for an attacker to trick a user into granting permissions. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1. | CVSS3: 8.8 | 0% Низкий | больше 2 лет назад | |
CVE-2023-4047 A bug in popup notifications delay calculation could have made it poss ... | CVSS3: 8.8 | 0% Низкий | больше 2 лет назад | |
CVE-2023-4046 In some circumstances, a stale value could have been used for a global variable in WASM JIT analysis. This resulted in incorrect compilation and a potentially exploitable crash in the content process. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1. | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад | |
CVE-2023-4046 In some circumstances, a stale value could have been used for a global ... | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад | |
CVE-2023-4045 Offscreen Canvas did not properly track cross-origin tainting, which could have been used to access image data from another site in violation of same-origin policy. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115.1. | CVSS3: 5.3 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу