Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

github логотип

GHSA-9846-hqmr-2486

больше 2 лет назад

The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could allow an attacker to perform remote code execution and sandbox escape. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.

CVSS3: 8.8
EPSS: Средний
github логотип

GHSA-9f8v-397v-w8c6

больше 2 лет назад

Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 121.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2023-6873

больше 2 лет назад

Memory safety bugs present in Firefox 120. Some of these bugs showed e ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2023-6873

больше 2 лет назад

Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 121.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2023-6872

больше 2 лет назад

Browser tab titles were being leaked by GNOME to system logs. This cou ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2023-6872

больше 2 лет назад

Browser tab titles were being leaked by GNOME to system logs. This could potentially expose the browsing habits of users running in a private tab. This vulnerability affects Firefox < 121.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-6871

больше 2 лет назад

Under certain conditions, Firefox did not display a warning when a use ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-6871

больше 2 лет назад

Under certain conditions, Firefox did not display a warning when a user attempted to navigate to a new protocol handler. This vulnerability affects Firefox < 121.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-6870

больше 2 лет назад

Applications which spawn a Toast notification in a background thread m ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-6870

больше 2 лет назад

Applications which spawn a Toast notification in a background thread may have obscured fullscreen notifications displayed by Firefox. *This issue only affects Android versions of Firefox and Firefox Focus.* This vulnerability affects Firefox < 121.

CVSS3: 4.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
github логотип
GHSA-9846-hqmr-2486

The WebGL `DrawElementsInstanced` method was susceptible to a heap buffer overflow when used on systems with the Mesa VM driver. This issue could allow an attacker to perform remote code execution and sandbox escape. This vulnerability affects Firefox ESR < 115.6, Thunderbird < 115.6, and Firefox < 121.

CVSS3: 8.8
20%
Средний
больше 2 лет назад
github логотип
GHSA-9f8v-397v-w8c6

Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 121.

CVSS3: 8.8
1%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-6873

Memory safety bugs present in Firefox 120. Some of these bugs showed e ...

CVSS3: 8.8
1%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-6873

Memory safety bugs present in Firefox 120. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 121.

CVSS3: 8.8
1%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-6872

Browser tab titles were being leaked by GNOME to system logs. This cou ...

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-6872

Browser tab titles were being leaked by GNOME to system logs. This could potentially expose the browsing habits of users running in a private tab. This vulnerability affects Firefox < 121.

CVSS3: 6.5
1%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-6871

Under certain conditions, Firefox did not display a warning when a use ...

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-6871

Under certain conditions, Firefox did not display a warning when a user attempted to navigate to a new protocol handler. This vulnerability affects Firefox < 121.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
debian логотип
CVE-2023-6870

Applications which spawn a Toast notification in a background thread m ...

CVSS3: 4.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-6870

Applications which spawn a Toast notification in a background thread may have obscured fullscreen notifications displayed by Firefox. *This issue only affects Android versions of Firefox and Firefox Focus.* This vulnerability affects Firefox < 121.

CVSS3: 4.3
0%
Низкий
больше 2 лет назад

Уязвимостей на страницу


Поделиться