Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 500
CVE-2019-17018
When in Private Browsing Mode on Windows 10, the Windows keyboard may ...
CVE-2019-17017
Due to a missing case handling object types, a type confusion vulnerability could occur, resulting in a crash. We presume that with enough effort that it could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.
CVE-2019-17017
Due to a missing case handling object types, a type confusion vulnerab ...
CVE-2019-17016
When pasting a <style> tag from the clipboard into a rich text editor, the CSS sanitizer incorrectly rewrites a @namespace rule. This could allow for injection into certain types of websites resulting in data exfiltration. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.
CVE-2019-17016
When pasting a <style> tag from the clipboard into a rich text e ...
CVE-2019-17015
During the initialization of a new content process, a pointer offset can be manipulated leading to memory corruption and a potentially exploitable crash in the parent process. *Note: this issue only occurs on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72.
CVE-2019-17015
During the initialization of a new content process, a pointer offset c ...
CVE-2019-17014
If an image had not loaded correctly (such as when it is not actually an image), it could be dragged and dropped cross-domain, resulting in a cross-origin information leak. This vulnerability affects Firefox < 71.
CVE-2019-17014
If an image had not loaded correctly (such as when it is not actually ...
CVE-2019-17013
Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 71.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2019-17018 When in Private Browsing Mode on Windows 10, the Windows keyboard may ... | CVSS3: 5.3 | 1% Низкий | больше 6 лет назад | |
CVE-2019-17017 Due to a missing case handling object types, a type confusion vulnerability could occur, resulting in a crash. We presume that with enough effort that it could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72. | CVSS3: 8.8 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17017 Due to a missing case handling object types, a type confusion vulnerab ... | CVSS3: 8.8 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17016 When pasting a <style> tag from the clipboard into a rich text editor, the CSS sanitizer incorrectly rewrites a @namespace rule. This could allow for injection into certain types of websites resulting in data exfiltration. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72. | CVSS3: 6.1 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17016 When pasting a <style> tag from the clipboard into a rich text e ... | CVSS3: 6.1 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17015 During the initialization of a new content process, a pointer offset can be manipulated leading to memory corruption and a potentially exploitable crash in the parent process. *Note: this issue only occurs on Windows. Other operating systems are unaffected.*. This vulnerability affects Firefox ESR < 68.4 and Firefox < 72. | CVSS3: 8.8 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17015 During the initialization of a new content process, a pointer offset c ... | CVSS3: 8.8 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17014 If an image had not loaded correctly (such as when it is not actually an image), it could be dragged and dropped cross-domain, resulting in a cross-origin information leak. This vulnerability affects Firefox < 71. | CVSS3: 7.4 | 1% Низкий | больше 6 лет назад | |
CVE-2019-17014 If an image had not loaded correctly (such as when it is not actually ... | CVSS3: 7.4 | 1% Низкий | больше 6 лет назад | |
CVE-2019-17013 Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 71. | CVSS3: 8.8 | 1% Низкий | больше 6 лет назад |
Уязвимостей на страницу