CVE-2017-7809
- EPSS 2.29%
- Veröffentlicht 11.06.2018 21:29:10
- Zuletzt bearbeitet 25.11.2025 17:50:16
A use-after-free vulnerability can occur when an editor DOM node is deleted prematurely during tree traversal while still bound to the document. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox E...
CVE-2017-7784
- EPSS 5.22%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 21.11.2024 03:32:39
A use-after-free vulnerability can occur when reading an image observer during frame reconstruction after the observer has been freed. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3,...
CVE-2017-7785
- EPSS 8.43%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 25.11.2025 17:50:16
A buffer overflow can occur when manipulating Accessible Rich Internet Applications (ARIA) attributes within the DOM. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55...
CVE-2017-7786
- EPSS 8.52%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 21.11.2024 03:32:39
A buffer overflow can occur when the image renderer attempts to paint non-displayable SVG elements. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < 52.3, and Firefox < 55.
CVE-2017-7787
- EPSS 0.98%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 21.11.2024 03:32:39
Same-origin policy protections can be bypassed on pages with embedded iframes during page reloads, allowing the iframes to access content on the top level page, leading to information disclosure. This vulnerability affects Thunderbird < 52.3, Firefox...
CVE-2017-7791
- EPSS 1.36%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 25.11.2025 17:50:16
On pages containing an iframe, the "data:" protocol can be used to create a modal alert that will render over arbitrary domains following page navigation, spoofing of the origin of the modal alert from the iframe content. This vulnerability affects T...
CVE-2017-7792
- EPSS 7.36%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 25.11.2025 17:50:16
A buffer overflow will occur when viewing a certificate in the certificate manager if the certificate has an extremely long object identifier (OID). This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.3, Firef...
CVE-2017-7793
- EPSS 2.44%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 25.11.2025 17:50:16
A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potentially exploitable crash. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird...
CVE-2017-7798
- EPSS 3.57%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 25.11.2025 17:50:16
The Developer Tools feature suffers from a XUL injection vulnerability due to improper sanitization of the web page source code. In the worst case, this could allow arbitrary code execution when opening a malicious page with the style editor tool. Th...
CVE-2017-7800
- EPSS 4.29%
- Veröffentlicht 11.06.2018 21:29:09
- Zuletzt bearbeitet 25.11.2025 17:50:16
A use-after-free vulnerability can occur in WebSockets when the object holding the connection is freed before the disconnection operation is finished. This results in an exploitable crash. This vulnerability affects Thunderbird < 52.3, Firefox ESR < ...