Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Mozilla Firefox

Mozilla Firefoxсвободный браузер на движке Gecko

Релизный цикл, информация об уязвимостях

Продукт: Mozilla Firefox
Вендор: mozilla

График релизов

115116117118119120121122123124125126127128129130131132133134135136137138139140141142143144145146147148149150151152153154202320242025202620272028

Релизные элементы

KBВерсияБилдДата доступности
138.0.4138.0.4
138.0.3138.0.3
138.0.1138.0.1
138.0138.0

Показывать по

Недавние уязвимости Mozilla Firefox

Количество 17 561

nvd логотип

CVE-2020-12400

почти 6 лет назад

When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 4.7
EPSS: Низкий
debian логотип

CVE-2020-12400

почти 6 лет назад

When converting coordinates from projective to affine, the modular inv ...

CVSS3: 4.7
EPSS: Низкий
ubuntu логотип

CVE-2020-12401

почти 6 лет назад

During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 4.7
EPSS: Низкий
ubuntu логотип

CVE-2020-12400

почти 6 лет назад

When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 4.7
EPSS: Низкий
fstec логотип

BDU:2021-01231

почти 6 лет назад

Уязвимость реализации функции isExceptionPending() браузера Mozilla Firefox, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2020-15674

почти 6 лет назад

Mozilla developers reported memory safety bugs present in Firefox 80. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 81.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2020-15665

почти 6 лет назад

Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.

CVSS3: 4.7
EPSS: Низкий
redhat логотип

CVE-2020-15675

почти 6 лет назад

When processing surfaces, the lifetime may outlive a persistent buffer leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 81.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2020-15678

почти 6 лет назад

When recursing through graphical layers while scrolling, an iterator may have become invalid, resulting in a potential use-after-free. This occurs because the function APZCTreeManager::ComputeClippedCompositionBounds did not follow iterator invalidation rules. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2020-15678

почти 6 лет назад

When recursing through graphical layers while scrolling, an iterator m ...

CVSS3: 8.8
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
1
nvd логотип
CVE-2020-12400

When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 4.7
0%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-12400

When converting coordinates from projective to affine, the modular inv ...

CVSS3: 4.7
0%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2020-12401

During ECDSA signature generation, padding applied in the nonce designed to ensure constant-time scalar multiplication was removed, resulting in variable-time execution dependent on secret data. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 4.7
0%
Низкий
почти 6 лет назад
ubuntu логотип
CVE-2020-12400

When converting coordinates from projective to affine, the modular inversion was not performed in constant time, resulting in a possible timing-based side channel attack. This vulnerability affects Firefox < 80 and Firefox for Android < 80.

CVSS3: 4.7
0%
Низкий
почти 6 лет назад
fstec логотип
BDU:2021-01231

Уязвимость реализации функции isExceptionPending() браузера Mozilla Firefox, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.8
1%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-15674

Mozilla developers reported memory safety bugs present in Firefox 80. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 81.

CVSS3: 8.8
1%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-15665

Firefox did not reset the address bar after the beforeunload dialog was shown if the user chose to remain on the page. This could have resulted in an incorrect URL being shown when used in conjunction with other unexpected browser behaviors. This vulnerability affects Firefox < 80.

CVSS3: 4.7
1%
Низкий
почти 6 лет назад
redhat логотип
CVE-2020-15675

When processing surfaces, the lifetime may outlive a persistent buffer leading to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox < 81.

CVSS3: 8.8
1%
Низкий
почти 6 лет назад
nvd логотип
CVE-2020-15678

When recursing through graphical layers while scrolling, an iterator may have become invalid, resulting in a potential use-after-free. This occurs because the function APZCTreeManager::ComputeClippedCompositionBounds did not follow iterator invalidation rules. This vulnerability affects Firefox < 81, Thunderbird < 78.3, and Firefox ESR < 78.3.

CVSS3: 8.8
2%
Низкий
почти 6 лет назад
debian логотип
CVE-2020-15678

When recursing through graphical layers while scrolling, an iterator m ...

CVSS3: 8.8
2%
Низкий
почти 6 лет назад

Уязвимостей на страницу


Поделиться