Логотип exploitDog
bind:"CVE-2018-12386" OR bind:"CVE-2018-12387"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2018-12386" OR bind:"CVE-2018-12387"

Количество 19

Количество 19

suse-cvrf логотип

openSUSE-SU-2018:2996-1

около 7 лет назад

Security update for Mozilla Firefox

EPSS: Низкий
oracle-oval логотип

ELSA-2018-2884

около 7 лет назад

ELSA-2018-2884: firefox security update (CRITICAL)

EPSS: Низкий
oracle-oval логотип

ELSA-2018-2881

около 7 лет назад

ELSA-2018-2881: firefox security update (CRITICAL)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:3476-1

около 7 лет назад

Security update for MozillaFirefox

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:3591-2

почти 7 лет назад

Security update for MozillaFirefox, MozillaFirefox-branding-SLE, llvm4, mozilla-nspr, mozilla-nss, apache2-mod_nss

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2018:3591-1

около 7 лет назад

Security update for MozillaFirefox, MozillaFirefox-branding-SLE, llvm4, mozilla-nspr, mozilla-nss, apache2-mod_nss

EPSS: Низкий
oracle-oval логотип

ELSA-2018-3006

около 7 лет назад

ELSA-2018-3006: firefox security update (CRITICAL)

EPSS: Низкий
ubuntu логотип

CVE-2018-12387

около 7 лет назад

A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 9.1
EPSS: Средний
redhat логотип

CVE-2018-12387

около 7 лет назад

A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.8
EPSS: Средний
nvd логотип

CVE-2018-12387

около 7 лет назад

A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 9.1
EPSS: Средний
debian логотип

CVE-2018-12387

около 7 лет назад

A vulnerability where the JavaScript JIT compiler inlines Array.protot ...

CVSS3: 9.1
EPSS: Средний
ubuntu логотип

CVE-2018-12386

около 7 лет назад

A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.1
EPSS: Средний
redhat логотип

CVE-2018-12386

около 7 лет назад

A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.8
EPSS: Средний
nvd логотип

CVE-2018-12386

около 7 лет назад

A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.1
EPSS: Средний
debian логотип

CVE-2018-12386

около 7 лет назад

A vulnerability in register allocation in JavaScript can lead to type ...

CVSS3: 8.1
EPSS: Средний
github логотип

GHSA-vfrp-p8qm-9m8x

больше 3 лет назад

A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 9.1
EPSS: Средний
github логотип

GHSA-5vgc-hmw3-287j

больше 3 лет назад

A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.1
EPSS: Средний
fstec логотип

BDU:2019-03415

около 7 лет назад

Уязвимость реализации метода Array.prototype.push JIT-компилятора веб-браузеров Firefox и Firefox ESR, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.1
EPSS: Средний
fstec логотип

BDU:2019-03414

около 7 лет назад

Уязвимость веб-браузеров Firefox, Firefox ESR, связанная с ошибками преобразования типов данных, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.1
EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
suse-cvrf логотип
openSUSE-SU-2018:2996-1

Security update for Mozilla Firefox

около 7 лет назад
oracle-oval логотип
ELSA-2018-2884

ELSA-2018-2884: firefox security update (CRITICAL)

около 7 лет назад
oracle-oval логотип
ELSA-2018-2881

ELSA-2018-2881: firefox security update (CRITICAL)

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:3476-1

Security update for MozillaFirefox

около 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:3591-2

Security update for MozillaFirefox, MozillaFirefox-branding-SLE, llvm4, mozilla-nspr, mozilla-nss, apache2-mod_nss

почти 7 лет назад
suse-cvrf логотип
SUSE-SU-2018:3591-1

Security update for MozillaFirefox, MozillaFirefox-branding-SLE, llvm4, mozilla-nspr, mozilla-nss, apache2-mod_nss

около 7 лет назад
oracle-oval логотип
ELSA-2018-3006

ELSA-2018-3006: firefox security update (CRITICAL)

около 7 лет назад
ubuntu логотип
CVE-2018-12387

A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 9.1
34%
Средний
около 7 лет назад
redhat логотип
CVE-2018-12387

A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.8
34%
Средний
около 7 лет назад
nvd логотип
CVE-2018-12387

A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 9.1
34%
Средний
около 7 лет назад
debian логотип
CVE-2018-12387

A vulnerability where the JavaScript JIT compiler inlines Array.protot ...

CVSS3: 9.1
34%
Средний
около 7 лет назад
ubuntu логотип
CVE-2018-12386

A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.1
39%
Средний
около 7 лет назад
redhat логотип
CVE-2018-12386

A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.8
39%
Средний
около 7 лет назад
nvd логотип
CVE-2018-12386

A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.1
39%
Средний
около 7 лет назад
debian логотип
CVE-2018-12386

A vulnerability in register allocation in JavaScript can lead to type ...

CVSS3: 8.1
39%
Средний
около 7 лет назад
github логотип
GHSA-vfrp-p8qm-9m8x

A vulnerability where the JavaScript JIT compiler inlines Array.prototype.push with multiple arguments that results in the stack pointer being off by 8 bytes after a bailout. This leaks a memory address to the calling function which can be used as part of an exploit inside the sandboxed content process. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 9.1
34%
Средний
больше 3 лет назад
github логотип
GHSA-5vgc-hmw3-287j

A vulnerability in register allocation in JavaScript can lead to type confusion, allowing for an arbitrary read and write. This leads to remote code execution inside the sandboxed content process when triggered. This vulnerability affects Firefox ESR < 60.2.2 and Firefox < 62.0.3.

CVSS3: 8.1
39%
Средний
больше 3 лет назад
fstec логотип
BDU:2019-03415

Уязвимость реализации метода Array.prototype.push JIT-компилятора веб-браузеров Firefox и Firefox ESR, позволяющая нарушителю выполнить произвольный код

CVSS3: 9.1
34%
Средний
около 7 лет назад
fstec логотип
BDU:2019-03414

Уязвимость веб-браузеров Firefox, Firefox ESR, связанная с ошибками преобразования типов данных, позволяющая нарушителю выполнить произвольный код

CVSS3: 8.1
39%
Средний
около 7 лет назад

Уязвимостей на страницу