Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 337

nvd логотип

CVE-2022-22753

больше 3 лет назад

A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an arbitrary directory. This could have been used to escalate to SYSTEM access.<br>*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

CVSS3: 7.1
EPSS: Низкий
debian логотип

CVE-2022-22752

больше 3 лет назад

Mozilla developers Christian Holler and Jason Kratzer reported memory ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2022-22752

больше 3 лет назад

Mozilla developers Christian Holler and Jason Kratzer reported memory safety bugs present in Firefox 95. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 96.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2022-22751

больше 3 лет назад

Mozilla developers Calixte Denizet, Kershaw Chang, Christian Holler, J ...

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2022-22751

больше 3 лет назад

Mozilla developers Calixte Denizet, Kershaw Chang, Christian Holler, Jason Kratzer, Gabriele Svelto, Tyson Smith, Simon Giesecke, and Steve Fink reported memory safety bugs present in Firefox 95 and Firefox ESR 91.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2022-22750

больше 3 лет назад

By generally accepting and passing resource handles across processes, ...

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2022-22750

больше 3 лет назад

By generally accepting and passing resource handles across processes, a compromised content process might have confused higher privileged processes to interact with handles that the unprivileged process should not have access to.<br>*This bug only affects Firefox for Windows and MacOS. Other operating systems are unaffected.*. This vulnerability affects Firefox < 96.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2022-22749

больше 3 лет назад

When scanning QR codes, Firefox for Android would have allowed navigat ...

CVSS3: 4.3
EPSS: Низкий
nvd логотип

CVE-2022-22749

больше 3 лет назад

When scanning QR codes, Firefox for Android would have allowed navigation to some URLs that do not point to web content.<br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 96.

CVSS3: 4.3
EPSS: Низкий
debian логотип

CVE-2022-22748

больше 3 лет назад

Malicious websites could have confused Firefox into showing the wrong ...

CVSS3: 6.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2022-22753

A Time-of-Check Time-of-Use bug existed in the Maintenance (Updater) Service that could be abused to grant Users write access to an arbitrary directory. This could have been used to escalate to SYSTEM access.<br>*This bug only affects Firefox on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox < 97, Thunderbird < 91.6, and Firefox ESR < 91.6.

CVSS3: 7.1
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-22752

Mozilla developers Christian Holler and Jason Kratzer reported memory ...

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-22752

Mozilla developers Christian Holler and Jason Kratzer reported memory safety bugs present in Firefox 95. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 96.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-22751

Mozilla developers Calixte Denizet, Kershaw Chang, Christian Holler, J ...

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-22751

Mozilla developers Calixte Denizet, Kershaw Chang, Christian Holler, Jason Kratzer, Gabriele Svelto, Tyson Smith, Simon Giesecke, and Steve Fink reported memory safety bugs present in Firefox 95 and Firefox ESR 91.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

CVSS3: 8.8
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-22750

By generally accepting and passing resource handles across processes, ...

CVSS3: 6.5
1%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-22750

By generally accepting and passing resource handles across processes, a compromised content process might have confused higher privileged processes to interact with handles that the unprivileged process should not have access to.<br>*This bug only affects Firefox for Windows and MacOS. Other operating systems are unaffected.*. This vulnerability affects Firefox < 96.

CVSS3: 6.5
1%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-22749

When scanning QR codes, Firefox for Android would have allowed navigat ...

CVSS3: 4.3
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-22749

When scanning QR codes, Firefox for Android would have allowed navigation to some URLs that do not point to web content.<br>*This bug only affects Firefox for Android. Other operating systems are unaffected.*. This vulnerability affects Firefox < 96.

CVSS3: 4.3
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-22748

Malicious websites could have confused Firefox into showing the wrong ...

CVSS3: 6.5
1%
Низкий
больше 3 лет назад

Уязвимостей на страницу


Поделиться