Redhat

Enterprise Linux

1709 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 2.31%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 21.11.2024 03:27:32

A crash triggerable by web content in which an "ErrorResult" references unassigned memory due to a logic error. The resulting crash may be exploitable. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 4...

  • EPSS 2.66%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 21.11.2024 03:27:32

A use-after-free can occur when events are fired for a "FontFace" object after the object has been already been destroyed while working with fonts. This results in a potentially exploitable crash. This vulnerability affects Firefox < 52, Firefox ESR ...

Exploit
  • EPSS 23.67%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 21.11.2024 03:27:32

A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This results in a potentially exploitable crash. This vulnerability affects Firefox < 52, Firefox ESR < 4...

Exploit
  • EPSS 2.35%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 21.11.2024 03:27:32

Certain response codes in FTP connections can result in the use of uninitialized values for ports in FTP operations. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52, and Thunderbird < 45.8.

Exploit
  • EPSS 1.1%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 21.11.2024 03:27:33

Using SVG filters that don't use the fixed point math implementation on a target iframe, a malicious page can extract pixel values from a targeted user. This can be used to extract history information and read text values across domains. This violate...

Exploit
  • EPSS 1.07%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 21.11.2024 03:27:33

Video files loaded video captions cross-origin without checking for the presence of CORS headers permitting such cross-origin use, leading to potential information disclosure for video captions. This vulnerability affects Firefox < 52, Firefox ESR < ...

Exploit
  • EPSS 2.66%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 21.11.2024 03:27:34

Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is managed for memory cleanup. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52...

  • EPSS 2.03%
  • Veröffentlicht 11.06.2018 21:29:03
  • Zuletzt bearbeitet 21.11.2024 03:27:29

A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

  • EPSS 2.44%
  • Veröffentlicht 11.06.2018 21:29:03
  • Zuletzt bearbeitet 21.11.2024 03:27:29

URLs containing certain unicode glyphs for alternative hyphens and quotes do not properly trigger punycode display, allowing for domain name spoofing attacks in the location bar. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and ...

Exploit
  • EPSS 1.19%
  • Veröffentlicht 11.06.2018 21:29:03
  • Zuletzt bearbeitet 21.11.2024 03:27:30

WebExtension scripts can use the "data:" protocol to affect pages loaded by other web extensions using this protocol, leading to potential data disclosure or privilege escalation in affected extensions. This vulnerability affects Firefox ESR < 45.7 a...