Логотип exploitDog
bind:"CVE-2020-12420" OR bind:"CVE-2020-12421" OR bind:"CVE-2020-12419" OR bind:"CVE-2020-12418"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2020-12420" OR bind:"CVE-2020-12421" OR bind:"CVE-2020-12419" OR bind:"CVE-2020-12418"

Количество 38

Количество 38

ubuntu логотип

CVE-2020-12421

больше 5 лет назад

When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2020-12421

больше 5 лет назад

When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.1
EPSS: Низкий
nvd логотип

CVE-2020-12421

больше 5 лет назад

When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-12421

больше 5 лет назад

When performing add-on updates, certificate chains terminating in non- ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-476g-xp34-4rj3

больше 3 лет назад

When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2022-05931

больше 5 лет назад

Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю отключить установленные надстройки

CVSS3: 6.5
EPSS: Низкий
ubuntu логотип

CVE-2020-12419

больше 5 лет назад

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 8.8
EPSS: Низкий
redhat логотип

CVE-2020-12419

больше 5 лет назад

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 8.8
EPSS: Низкий
nvd логотип

CVE-2020-12419

больше 5 лет назад

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 8.8
EPSS: Низкий
debian логотип

CVE-2020-12419

больше 5 лет назад

When processing callbacks that occurred during window flushing in the ...

CVSS3: 8.8
EPSS: Низкий
ubuntu логотип

CVE-2020-12418

больше 5 лет назад

Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2020-12418

больше 5 лет назад

Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
EPSS: Низкий
nvd логотип

CVE-2020-12418

больше 5 лет назад

Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2020-12418

больше 5 лет назад

Manipulating individual parts of a URL object could have caused an out ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-wqm8-hxqc-qwpc

больше 3 лет назад

Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-qfjv-j5f5-wv79

больше 3 лет назад

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 8.8
EPSS: Низкий
fstec логотип

BDU:2022-05806

больше 5 лет назад

Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с чтением данных за границами буфера в памяти, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.5
EPSS: Низкий
fstec логотип

BDU:2021-00077

больше 5 лет назад

Уязвимость программного обеспечения Firefox, Firefox ESR, Thunderbird, связанная с использованием области памяти после её освобождения, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2020-12421

When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-12421

When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.1
1%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-12421

When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-12421

When performing add-on updates, certificate chains terminating in non- ...

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
github логотип
GHSA-476g-xp34-4rj3

When performing add-on updates, certificate chains terminating in non-built-in-roots were rejected (even if they were legitimately added by an administrator.) This could have caused add-ons to become out-of-date silently without notification to the user. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
1%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-05931

Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с ошибками процедуры подтверждения подлинности сертификата, позволяющая нарушителю отключить установленные надстройки

CVSS3: 6.5
1%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-12419

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 8.8
0%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-12419

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 8.8
0%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-12419

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 8.8
0%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-12419

When processing callbacks that occurred during window flushing in the ...

CVSS3: 8.8
0%
Низкий
больше 5 лет назад
ubuntu логотип
CVE-2020-12418

Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
2%
Низкий
больше 5 лет назад
redhat логотип
CVE-2020-12418

Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
2%
Низкий
больше 5 лет назад
nvd логотип
CVE-2020-12418

Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
2%
Низкий
больше 5 лет назад
debian логотип
CVE-2020-12418

Manipulating individual parts of a URL object could have caused an out ...

CVSS3: 6.5
2%
Низкий
больше 5 лет назад
github логотип
GHSA-wqm8-hxqc-qwpc

Manipulating individual parts of a URL object could have caused an out-of-bounds read, leaking process memory to malicious JavaScript. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 6.5
2%
Низкий
больше 3 лет назад
github логотип
GHSA-qfjv-j5f5-wv79

When processing callbacks that occurred during window flushing in the parent process, the associated window may die; causing a use-after-free condition. This could have led to memory corruption and a potentially exploitable crash. This vulnerability affects Firefox ESR < 68.10, Firefox < 78, and Thunderbird < 68.10.0.

CVSS3: 8.8
0%
Низкий
больше 3 лет назад
fstec логотип
BDU:2022-05806

Уязвимость браузеров Mozilla Firefox, Mozilla Firefox ESR и почтового клиента Thunderbird, связанная с чтением данных за границами буфера в памяти, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 6.5
2%
Низкий
больше 5 лет назад
fstec логотип
BDU:2021-00077

Уязвимость программного обеспечения Firefox, Firefox ESR, Thunderbird, связанная с использованием области памяти после её освобождения, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании

CVSS3: 8.1
0%
Низкий
больше 5 лет назад

Уязвимостей на страницу