Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 337
GHSA-x4vx-jp8h-mrcx
Different techniques existed to obscure the fullscreen notification in Firefox for Android. These could have lead to potential user confusion and spoofing attacks. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 126.
GHSA-rqmx-jjch-gmgj
Multiple WebRTC threads could have claimed a newly connected audio input leading to use-after-free. This vulnerability affects Firefox < 126.
CVE-2024-4778
Memory safety bugs present in Firefox 125. Some of these bugs showed e ...
CVE-2024-4778
Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126.
CVE-2024-4777
Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thu ...
CVE-2024-4777
Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thunderbird 115.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11.
CVE-2024-4776
A file dialog shown while in full-screen mode could have resulted in t ...
CVE-2024-4776
A file dialog shown while in full-screen mode could have resulted in the window remaining disabled. This vulnerability affects Firefox < 126.
CVE-2024-4775
An iterator stop condition was missing when handling WASM code in the ...
CVE-2024-4775
An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid memory access and undefined behavior. *Note:* This issue only affects the application when the profiler is running. This vulnerability affects Firefox < 126.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-x4vx-jp8h-mrcx Different techniques existed to obscure the fullscreen notification in Firefox for Android. These could have lead to potential user confusion and spoofing attacks. *This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox < 126. | CVSS3: 4.3 | 0% Низкий | больше 2 лет назад | |
GHSA-rqmx-jjch-gmgj Multiple WebRTC threads could have claimed a newly connected audio input leading to use-after-free. This vulnerability affects Firefox < 126. | CVSS3: 9.8 | 1% Низкий | больше 2 лет назад | |
CVE-2024-4778 Memory safety bugs present in Firefox 125. Some of these bugs showed e ... | CVSS3: 9.8 | 0% Низкий | больше 2 лет назад | |
CVE-2024-4778 Memory safety bugs present in Firefox 125. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126. | CVSS3: 9.8 | 0% Низкий | больше 2 лет назад | |
CVE-2024-4777 Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thu ... | CVSS3: 8.8 | 1% Низкий | больше 2 лет назад | |
CVE-2024-4777 Memory safety bugs present in Firefox 125, Firefox ESR 115.10, and Thunderbird 115.10. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 126, Firefox ESR < 115.11, and Thunderbird < 115.11. | CVSS3: 8.8 | 1% Низкий | больше 2 лет назад | |
CVE-2024-4776 A file dialog shown while in full-screen mode could have resulted in t ... | CVSS3: 8.2 | 0% Низкий | больше 2 лет назад | |
CVE-2024-4776 A file dialog shown while in full-screen mode could have resulted in the window remaining disabled. This vulnerability affects Firefox < 126. | CVSS3: 8.2 | 0% Низкий | больше 2 лет назад | |
CVE-2024-4775 An iterator stop condition was missing when handling WASM code in the ... | CVSS3: 5.9 | 0% Низкий | больше 2 лет назад | |
CVE-2024-4775 An iterator stop condition was missing when handling WASM code in the built-in profiler, potentially leading to invalid memory access and undefined behavior. *Note:* This issue only affects the application when the profiler is running. This vulnerability affects Firefox < 126. | CVSS3: 5.9 | 0% Низкий | больше 2 лет назад |
Уязвимостей на страницу