Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 561

suse-cvrf логотип

SUSE-SU-2020:3311-1

почти 6 лет назад

Security update for MozillaFirefox

EPSS: Средний
suse-cvrf логотип

SUSE-SU-2020:14542-1

почти 6 лет назад

Security update for MozillaFirefox

EPSS: Средний
redhat логотип

CVE-2020-26950

почти 6 лет назад

In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. This vulnerability affects Firefox < 82.0.3, Firefox ESR < 78.4.1, and Thunderbird < 78.4.2.

CVSS3: 8.8
EPSS: Средний
fstec логотип

BDU:2021-01486

почти 6 лет назад

Уязвимость реализации технологии WebRTC программных средств Google Chrome, Firefox, Firefox-ESR и Thunderbird, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.3
EPSS: Низкий
nvd логотип

CVE-2020-6829

почти 6 лет назад

When performing EC scalar point multiplication, the wNAF point multiplication algorithm was used; which leaked partial information about the nonce used during signature generation. Given an electro-magnetic trace of a few signature generations, the private key could have been computed. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2020-6829

почти 6 лет назад

When performing EC scalar point multiplication, the wNAF point multipl ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2020-6829

почти 6 лет назад

When performing EC scalar point multiplication, the wNAF point multiplication algorithm was used; which leaked partial information about the nonce used during signature generation. Given an electro-magnetic trace of a few signature generations, the private key could have been computed. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2020-15684

почти 6 лет назад

Mozilla developers reported memory safety bugs present in Firefox 81. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 82.

CVSS3: 9.8
EPSS: Низкий
debian логотип

CVE-2020-15684

почти 6 лет назад

Mozilla developers reported memory safety bugs present in Firefox 81. ...

CVSS3: 9.8
EPSS: Низкий
nvd логотип

CVE-2020-15683

почти 6 лет назад

Mozilla developers and community members reported memory safety bugs present in Firefox 81 and Firefox ESR 78.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 78.4, Firefox < 82, and Thunderbird < 78.4.

CVSS3: 9.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
suse-cvrf логотип
SUSE-SU-2020:3311-1

Security update for MozillaFirefox

42%
Средний
почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2020:14542-1

Security update for MozillaFirefox

42%
Средний
почти 6 лет назад
redhat логотип
CVE-2020-26950

In certain circumstances, the MCallGetProperty opcode can be emitted with unmet assumptions resulting in an exploitable use-after-free condition. This vulnerability affects Firefox < 82.0.3, Firefox ESR < 78.4.1, and Thunderbird < 78.4.2.

CVSS3: 8.8
42%
Средний
почти 6 лет назад
fstec логотип
BDU:2021-01486

Уязвимость реализации технологии WebRTC программных средств Google Chrome, Firefox, Firefox-ESR и Thunderbird, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 7.3
2%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-6829

When performing EC scalar point multiplication, the wNAF point multiplication algorithm was used; which leaked partial information about the nonce used during signature generation. Given an electro-magnetic trace of a few signature generations, the private key could have been computed. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 5.3
1%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-6829

When performing EC scalar point multiplication, the wNAF point multipl ...

CVSS3: 5.3
1%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2020-6829

When performing EC scalar point multiplication, the wNAF point multiplication algorithm was used; which leaked partial information about the nonce used during signature generation. Given an electro-magnetic trace of a few signature generations, the private key could have been computed. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 5.3
1%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-15684

Mozilla developers reported memory safety bugs present in Firefox 81. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 82.

CVSS3: 9.8
1%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-15684

Mozilla developers reported memory safety bugs present in Firefox 81. ...

CVSS3: 9.8
1%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-15683

Mozilla developers and community members reported memory safety bugs present in Firefox 81 and Firefox ESR 78.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 78.4, Firefox < 82, and Thunderbird < 78.4.

CVSS3: 9.8
3%
Низкий
почти 6 лет назад

Уязвимостей на страницу


Поделиться