Redhat

Enterprise Linux

1709 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 7.72%
  • Veröffentlicht 11.06.2018 21:29:09
  • Zuletzt bearbeitet 21.11.2024 03:32:40

A buffer overflow will occur when viewing a certificate in the certificate manager if the certificate has an extremely long object identifier (OID). This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firef...

  • EPSS 2.57%
  • Veröffentlicht 11.06.2018 21:29:09
  • Zuletzt bearbeitet 21.11.2024 03:32:40

A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potentially exploitable crash. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird...

  • EPSS 2.92%
  • Veröffentlicht 11.06.2018 21:29:09
  • Zuletzt bearbeitet 21.11.2024 03:32:40

The Developer Tools feature suffers from a XUL injection vulnerability due to improper sanitization of the web page source code. In the worst case, this could allow arbitrary code execution when opening a malicious page with the style editor tool. Th...

Exploit
  • EPSS 4.5%
  • Veröffentlicht 11.06.2018 21:29:09
  • Zuletzt bearbeitet 21.11.2024 03:32:41

A use-after-free vulnerability can occur in WebSockets when the object holding the connection is freed before the disconnection operation is finished. This results in an exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < ...

Exploit
  • EPSS 2.44%
  • Veröffentlicht 11.06.2018 21:29:09
  • Zuletzt bearbeitet 21.11.2024 03:32:41

A use-after-free vulnerability can occur while re-computing layout for a "marquee" element during window resizing where the updated style object is freed while still in use. This results in a potentially exploitable crash. This vulnerability affects ...

Exploit
  • EPSS 2.41%
  • Veröffentlicht 11.06.2018 21:29:09
  • Zuletzt bearbeitet 21.11.2024 03:32:41

A use-after-free vulnerability can occur when manipulating the DOM during the resize event of an image element. If these elements have been freed due to a lack of strong references, a potentially exploitable crash may occur when the freed elements ar...

Exploit
  • EPSS 2.02%
  • Veröffentlicht 11.06.2018 21:29:07
  • Zuletzt bearbeitet 21.11.2024 03:27:40

A use-after-free vulnerability in frame selection triggered by a combination of malicious script content and key presses by a user. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Fi...

  • EPSS 2.02%
  • Veröffentlicht 11.06.2018 21:29:07
  • Zuletzt bearbeitet 21.11.2024 03:27:40

During DOM manipulations of the accessibility tree through script, the DOM tree can become out of sync with the accessibility tree, leading to memory corruption and a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firef...

Exploit
  • EPSS 23.65%
  • Veröffentlicht 11.06.2018 21:29:07
  • Zuletzt bearbeitet 21.11.2024 03:27:40

An out-of-bounds read while processing SVG content in "ConvolvePixel". This results in a crash and also allows for otherwise inaccessible memory being copied into SVG graphic content, which could then displayed. This vulnerability affects Thunderbird...

Exploit
  • EPSS 0.62%
  • Veröffentlicht 11.06.2018 21:29:07
  • Zuletzt bearbeitet 21.11.2024 03:27:40

If a page is loaded from an original site through a hyperlink and contains a redirect to a "data:text/html" URL, triggering a reload will run the reloaded "data:text/html" page with its origin set incorrectly. This allows for a cross-site scripting (...