Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 208
GHSA-h7w4-g832-m899
Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
GHSA-gqm4-gr2q-ph9g
Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
GHSA-856j-8v8v-wvfq
Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 153.
GHSA-3mwp-7c29-vp5v
JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
GHSA-vf2m-xqpg-vqcc
Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153.
GHSA-534q-w7ff-7vh6
Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153.
GHSA-4wj3-8493-w74m
Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
GHSA-vmm5-fq3q-c8fc
Memory safety bugs present in Firefox ESR 115.37 and Firefox ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38 and Firefox ESR 140.13.
GHSA-2h4f-4mx5-4hwr
Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153.
GHSA-496m-5cg2-hw82
Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-h7w4-g832-m899 Incorrect boundary conditions in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | 9 дней назад | |
GHSA-gqm4-gr2q-ph9g Information disclosure in the Framework component in DevTools. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | CVSS3: 7.5 | 0% Низкий | 9 дней назад | |
GHSA-856j-8v8v-wvfq Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 153. | CVSS3: 10 | 0% Низкий | 9 дней назад | |
GHSA-3mwp-7c29-vp5v JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | 9 дней назад | |
GHSA-vf2m-xqpg-vqcc Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153. | CVSS3: 9.1 | 0% Низкий | 9 дней назад | |
GHSA-534q-w7ff-7vh6 Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153. | CVSS3: 9.8 | 0% Низкий | 9 дней назад | |
GHSA-4wj3-8493-w74m Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | CVSS3: 8.8 | 0% Низкий | 9 дней назад | |
GHSA-vmm5-fq3q-c8fc Memory safety bugs present in Firefox ESR 115.37 and Firefox ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38 and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | 9 дней назад | |
GHSA-2h4f-4mx5-4hwr Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153. | CVSS3: 9.8 | 0% Низкий | 9 дней назад | |
GHSA-496m-5cg2-hw82 Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | 9 дней назад |
Уязвимостей на страницу