Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

debian логотип

CVE-2023-29537

около 3 лет назад

Multiple race conditions in the font initialization could have led to ...

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2023-29537

около 3 лет назад

Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-controlled code. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2023-29536

около 3 лет назад

An attacker could cause the memory manager to incorrectly free a point ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2023-29536

около 3 лет назад

An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resulting in an assertion, memory corruption, or a potentially exploitable crash. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2023-29535

около 3 лет назад

Following a Garbage Collector compaction, weak maps may have been acce ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2023-29535

около 3 лет назад

Following a Garbage Collector compaction, weak maps may have been accessed before they were correctly traced. This resulted in memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2023-29533

около 3 лет назад

A website could have obscured the fullscreen notification by using a c ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2023-29533

около 3 лет назад

A website could have obscured the fullscreen notification by using a combination of <code>window.open</code>, fullscreen requests, <code>window.name</code> assignments, and <code>setInterval</code> calls. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2023-28177

около 3 лет назад

Memory safety bugs present in Firefox 110. Some of these bugs showed e ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2023-28177

около 3 лет назад

Memory safety bugs present in Firefox 110. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 111.

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
debian логотип
CVE-2023-29537

Multiple race conditions in the font initialization could have led to ...

CVSS3: 7.5
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-29537

Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-controlled code. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.

CVSS3: 7.5
1%
Низкий
около 3 лет назад
debian логотип
CVE-2023-29536

An attacker could cause the memory manager to incorrectly free a point ...

CVSS3: 8.8
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-29536

An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resulting in an assertion, memory corruption, or a potentially exploitable crash. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.

CVSS3: 8.8
1%
Низкий
около 3 лет назад
debian логотип
CVE-2023-29535

Following a Garbage Collector compaction, weak maps may have been acce ...

CVSS3: 6.5
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-29535

Following a Garbage Collector compaction, weak maps may have been accessed before they were correctly traced. This resulted in memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.

CVSS3: 6.5
1%
Низкий
около 3 лет назад
debian логотип
CVE-2023-29533

A website could have obscured the fullscreen notification by using a c ...

CVSS3: 4.3
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-29533

A website could have obscured the fullscreen notification by using a combination of <code>window.open</code>, fullscreen requests, <code>window.name</code> assignments, and <code>setInterval</code> calls. This could have led to user confusion and possible spoofing attacks. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.

CVSS3: 4.3
1%
Низкий
около 3 лет назад
debian логотип
CVE-2023-28177

Memory safety bugs present in Firefox 110. Some of these bugs showed e ...

CVSS3: 8.8
1%
Низкий
около 3 лет назад
nvd логотип
CVE-2023-28177

Memory safety bugs present in Firefox 110. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 111.

CVSS3: 8.8
1%
Низкий
около 3 лет назад

Уязвимостей на страницу


Поделиться