Mozilla Firefox — свободный браузер на движке Gecko
Релизный цикл, информация об уязвимостях
График релизов
Релизные элементы
| KB | Версия | Билд | Дата доступности |
|---|---|---|---|
| 138.0.4 | 138.0.4 | ||
| 138.0.3 | 138.0.3 | ||
| 138.0.1 | 138.0.1 | ||
| 138.0 | 138.0 |
Показывать по
Количество 17 500
CVE-2019-17013
Mozilla developers reported memory safety bugs present in Firefox 70. ...
CVE-2019-17012
Mozilla developers reported memory safety bugs present in Firefox 70 and Firefox ESR 68.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
CVE-2019-17012
Mozilla developers reported memory safety bugs present in Firefox 70 a ...
CVE-2019-17011
Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free condition and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
CVE-2019-17011
Under certain conditions, when retrieving a document from a DocShell i ...
CVE-2019-17010
Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race condition could have caused a use-after-free and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
CVE-2019-17010
Under certain conditions, when checking the Resist Fingerprinting pref ...
CVE-2019-17009
When running, the updater service wrote status and log files to an unrestricted location; potentially allowing an unprivileged process to locate and exploit a vulnerability in file handling in the updater service. *Note: This attack requires local system access and only affects Windows. Other operating systems are not affected.*. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
CVE-2019-17009
When running, the updater service wrote status and log files to an unr ...
CVE-2019-17008
When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано 1 | |
|---|---|---|---|---|
CVE-2019-17013 Mozilla developers reported memory safety bugs present in Firefox 70. ... | CVSS3: 8.8 | 1% Низкий | больше 6 лет назад | |
CVE-2019-17012 Mozilla developers reported memory safety bugs present in Firefox 70 and Firefox ESR 68.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71. | CVSS3: 8.8 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17012 Mozilla developers reported memory safety bugs present in Firefox 70 a ... | CVSS3: 8.8 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17011 Under certain conditions, when retrieving a document from a DocShell in the antitracking code, a race condition could cause a use-after-free condition and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71. | CVSS3: 7.5 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17011 Under certain conditions, when retrieving a document from a DocShell i ... | CVSS3: 7.5 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17010 Under certain conditions, when checking the Resist Fingerprinting preference during device orientation checks, a race condition could have caused a use-after-free and a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71. | CVSS3: 7.5 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17010 Under certain conditions, when checking the Resist Fingerprinting pref ... | CVSS3: 7.5 | 2% Низкий | больше 6 лет назад | |
CVE-2019-17009 When running, the updater service wrote status and log files to an unrestricted location; potentially allowing an unprivileged process to locate and exploit a vulnerability in file handling in the updater service. *Note: This attack requires local system access and only affects Windows. Other operating systems are not affected.*. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71. | CVSS3: 7.8 | 0% Низкий | больше 6 лет назад | |
CVE-2019-17009 When running, the updater service wrote status and log files to an unr ... | CVSS3: 7.8 | 0% Низкий | больше 6 лет назад | |
CVE-2019-17008 When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71. | CVSS3: 8.8 | 2% Низкий | больше 6 лет назад |
Уязвимостей на страницу