Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 337
GHSA-8c8x-848r-wqq7
Due to large allocation checks in Angle for GLSL shaders being too lenient an out-of-bounds access could occur when allocating more than 8192 ints in private shader memory on mac OS. This vulnerability affects Firefox < 128 and Firefox ESR < 115.13.
GHSA-rjwc-235r-8986
A race condition could lead to a cross-origin container obtaining permissions of the top-level origin. This vulnerability affects Firefox < 128 and Firefox ESR < 115.13.
GHSA-gq55-cjrv-p49j
It was possible to prevent a user from exiting pointerlock when pressing escape and to overlay customValidity notifications from a `<select>` element over certain permission prompts. This could be used to confuse a user into giving a site unintended permissions. This vulnerability affects Firefox < 128.
GHSA-9vqr-5j64-p9wr
Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128 and Firefox ESR < 115.13.
GHSA-h7q8-vff8-p3j8
The frame iterator could get stuck in a loop when encountering certain wasm frames leading to incorrect stack traces. This vulnerability affects Firefox < 128.
CVE-2024-6615
Memory safety bugs present in Firefox 127 and Thunderbird 127. Some of ...
CVE-2024-6615
Memory safety bugs present in Firefox 127 and Thunderbird 127. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128 and Thunderbird < 128.
CVE-2024-6614
The frame iterator could get stuck in a loop when encountering certain ...
CVE-2024-6614
The frame iterator could get stuck in a loop when encountering certain wasm frames leading to incorrect stack traces. This vulnerability affects Firefox < 128 and Thunderbird < 128.
CVE-2024-6613
The frame iterator could get stuck in a loop when encountering certain ...
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-8c8x-848r-wqq7 Due to large allocation checks in Angle for GLSL shaders being too lenient an out-of-bounds access could occur when allocating more than 8192 ints in private shader memory on mac OS. This vulnerability affects Firefox < 128 and Firefox ESR < 115.13. | CVSS3: 6.3 | 0% Низкий | около 2 лет назад | |
GHSA-rjwc-235r-8986 A race condition could lead to a cross-origin container obtaining permissions of the top-level origin. This vulnerability affects Firefox < 128 and Firefox ESR < 115.13. | CVSS3: 4.7 | 0% Низкий | около 2 лет назад | |
GHSA-gq55-cjrv-p49j It was possible to prevent a user from exiting pointerlock when pressing escape and to overlay customValidity notifications from a `<select>` element over certain permission prompts. This could be used to confuse a user into giving a site unintended permissions. This vulnerability affects Firefox < 128. | CVSS3: 8.8 | 1% Низкий | около 2 лет назад | |
GHSA-9vqr-5j64-p9wr Memory safety bugs present in Firefox 127, Firefox ESR 115.12, and Thunderbird 115.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128 and Firefox ESR < 115.13. | CVSS3: 7.5 | 1% Низкий | около 2 лет назад | |
GHSA-h7q8-vff8-p3j8 The frame iterator could get stuck in a loop when encountering certain wasm frames leading to incorrect stack traces. This vulnerability affects Firefox < 128. | CVSS3: 4.3 | 0% Низкий | около 2 лет назад | |
CVE-2024-6615 Memory safety bugs present in Firefox 127 and Thunderbird 127. Some of ... | CVSS3: 8.8 | 0% Низкий | около 2 лет назад | |
CVE-2024-6615 Memory safety bugs present in Firefox 127 and Thunderbird 127. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 128 and Thunderbird < 128. | CVSS3: 8.8 | 0% Низкий | около 2 лет назад | |
CVE-2024-6614 The frame iterator could get stuck in a loop when encountering certain ... | CVSS3: 4.3 | 0% Низкий | около 2 лет назад | |
CVE-2024-6614 The frame iterator could get stuck in a loop when encountering certain wasm frames leading to incorrect stack traces. This vulnerability affects Firefox < 128 and Thunderbird < 128. | CVSS3: 4.3 | 0% Низкий | около 2 лет назад | |
CVE-2024-6613 The frame iterator could get stuck in a loop when encountering certain ... | CVSS3: 5.5 | 0% Низкий | около 2 лет назад |
Уязвимостей на страницу