Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 673
GHSA-534q-w7ff-7vh6
Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153.
GHSA-vmm5-fq3q-c8fc
Memory safety bugs present in Firefox ESR 115.37 and Firefox ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38 and Firefox ESR 140.13.
GHSA-3mwp-7c29-vp5v
JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
GHSA-2h4f-4mx5-4hwr
Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153.
GHSA-4wj3-8493-w74m
Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13.
GHSA-vf2m-xqpg-vqcc
Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153.
GHSA-496m-5cg2-hw82
Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13.
GHSA-856j-8v8v-wvfq
Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 153.
GHSA-gm5x-4m73-f248
Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13.
GHSA-vcc7-rj3q-v3r3
JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
GHSA-534q-w7ff-7vh6 Privilege escalation in the DOM: Workers component. This vulnerability was fixed in Firefox 153. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-vmm5-fq3q-c8fc Memory safety bugs present in Firefox ESR 115.37 and Firefox ESR 140.12. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox ESR 115.38 and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-3mwp-7c29-vp5v JIT miscompilation in the JavaScript: WebAssembly component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-2h4f-4mx5-4hwr Privilege escalation in the DOM: Navigation component. This vulnerability was fixed in Firefox 153. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-4wj3-8493-w74m Use-after-free in the WebRTC: Audio/Video component. This vulnerability was fixed in Firefox 153 and Firefox ESR 140.13. | CVSS3: 8.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-vf2m-xqpg-vqcc Incorrect boundary conditions in the Audio/Video: Playback component. This vulnerability was fixed in Firefox 153. | CVSS3: 9.1 | 0% Низкий | около 2 месяцев назад | |
GHSA-496m-5cg2-hw82 Memory safety bugs present in Firefox ESR 115.37, Firefox ESR 140.12 and Firefox 152. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-856j-8v8v-wvfq Sandbox escape due to invalid pointer in the Disability Access APIs component. This vulnerability was fixed in Firefox 153. | CVSS3: 10 | 0% Низкий | около 2 месяцев назад | |
GHSA-gm5x-4m73-f248 Incorrect boundary conditions in the Graphics component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад | |
GHSA-vcc7-rj3q-v3r3 JIT miscompilation in the JavaScript Engine: JIT component. This vulnerability was fixed in Firefox 153, Firefox ESR 115.38, and Firefox ESR 140.13. | CVSS3: 9.8 | 0% Низкий | около 2 месяцев назад |
Уязвимостей на страницу