Количество 26 125
Количество 26 125
CVE-2024-7598
Network restriction bypass via race condition during namespace termination
CVE-2024-7592
CVE-2024-7550
Chromium: CVE-2024-7532 Out of bounds memory access in ANGLE
CVE-2024-7536
Chromium: CVE-2024-7550 Type Confusion in V8
CVE-2024-7535
Chromium: CVE-2024-7536 Use after free in WebAudio
CVE-2024-7534
Chromium: CVE-2024-7535 Inappropriate implementation in V8
CVE-2024-7533
Chromium: CVE-2024-7534 Heap buffer overflow in Layout
CVE-2024-7532
Chromium: CVE-2024-7533 Use after free in Sharing
CVE-2024-7527
Unexpected marking work at the start of sweeping could have led to a use-after-free. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.
CVE-2024-7526
ANGLE failed to initialize parameters which lead to reading from uninitialized memory. This could be leveraged to leak sensitive data from memory. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.
CVE-2024-7525
It was possible for a web extension with minimal permissions to create a `StreamFilter` which could be used to read and modify the response body of requests on any site. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.
CVE-2024-7524
Firefox adds web-compatibility shims in place of some tracking scripts blocked by Enhanced Tracking Protection. On a site protected by Content Security Policy in "strict-dynamic" mode, an attacker able to inject an HTML element could have used a DOM Clobbering attack on some of the shims and achieved XSS, bypassing the CSP strict-dynamic protection. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, and Firefox ESR < 128.1.
CVE-2024-7522
Editor code failed to check an attribute value. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.
CVE-2024-7521
Incomplete WebAssembly exception handing could have led to a use-after-free. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.
CVE-2024-7520
A type confusion bug in WebAssembly could be leveraged by an attacker to potentially achieve code execution. This vulnerability affects Firefox < 129, Firefox ESR < 128.1, and Thunderbird < 128.1.
CVE-2024-7519
Insufficient checks when processing graphics shared memory could have led to memory corruption. This could be leveraged by an attacker to perform a sandbox escape. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14.
CVE-2024-7409
Qemu: denial of service via improper synchronization in qemu nbd server during socket closure
CVE-2024-7383
CVE-2024-7348
CVE-2024-7347
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2024-7598 Network restriction bypass via race condition during namespace termination | CVSS3: 3.1 | 0% Низкий | 12 месяцев назад | |
CVSS3: 7.5 | 2% Низкий | почти 2 года назад | ||
CVE-2024-7550 Chromium: CVE-2024-7532 Out of bounds memory access in ANGLE | 1% Низкий | около 2 лет назад | ||
CVE-2024-7536 Chromium: CVE-2024-7550 Type Confusion in V8 | 1% Низкий | около 2 лет назад | ||
CVE-2024-7535 Chromium: CVE-2024-7536 Use after free in WebAudio | 1% Низкий | около 2 лет назад | ||
CVE-2024-7534 Chromium: CVE-2024-7535 Inappropriate implementation in V8 | 1% Низкий | около 2 лет назад | ||
CVE-2024-7533 Chromium: CVE-2024-7534 Heap buffer overflow in Layout | 1% Низкий | около 2 лет назад | ||
CVE-2024-7532 Chromium: CVE-2024-7533 Use after free in Sharing | 1% Низкий | около 2 лет назад | ||
CVE-2024-7527 Unexpected marking work at the start of sweeping could have led to a use-after-free. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14. | 1% Низкий | 12 месяцев назад | ||
CVE-2024-7526 ANGLE failed to initialize parameters which lead to reading from uninitialized memory. This could be leveraged to leak sensitive data from memory. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14. | 1% Низкий | 12 месяцев назад | ||
CVE-2024-7525 It was possible for a web extension with minimal permissions to create a `StreamFilter` which could be used to read and modify the response body of requests on any site. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14. | 1% Низкий | 12 месяцев назад | ||
CVE-2024-7524 Firefox adds web-compatibility shims in place of some tracking scripts blocked by Enhanced Tracking Protection. On a site protected by Content Security Policy in "strict-dynamic" mode, an attacker able to inject an HTML element could have used a DOM Clobbering attack on some of the shims and achieved XSS, bypassing the CSP strict-dynamic protection. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, and Firefox ESR < 128.1. | 0% Низкий | 6 месяцев назад | ||
CVE-2024-7522 Editor code failed to check an attribute value. This could have led to an out-of-bounds read. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14. | 1% Низкий | 6 месяцев назад | ||
CVE-2024-7521 Incomplete WebAssembly exception handing could have led to a use-after-free. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14. | 1% Низкий | 6 месяцев назад | ||
CVE-2024-7520 A type confusion bug in WebAssembly could be leveraged by an attacker to potentially achieve code execution. This vulnerability affects Firefox < 129, Firefox ESR < 128.1, and Thunderbird < 128.1. | 1% Низкий | 12 месяцев назад | ||
CVE-2024-7519 Insufficient checks when processing graphics shared memory could have led to memory corruption. This could be leveraged by an attacker to perform a sandbox escape. This vulnerability affects Firefox < 129, Firefox ESR < 115.14, Firefox ESR < 128.1, Thunderbird < 128.1, and Thunderbird < 115.14. | 1% Низкий | 12 месяцев назад | ||
CVE-2024-7409 Qemu: denial of service via improper synchronization in qemu nbd server during socket closure | CVSS3: 7.5 | 1% Низкий | 12 месяцев назад | |
CVSS3: 7.4 | 0% Низкий | почти 2 года назад | ||
CVSS3: 7.5 | 2% Низкий | около 2 лет назад | ||
CVSS3: 4.7 | 0% Низкий | почти 2 года назад |
Уязвимостей на страницу