CVE-2017-5442
- EPSS 2.02%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:37
A use-after-free vulnerability during changes in style when manipulating DOM elements. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.
CVE-2017-5443
- EPSS 2.02%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:37
An out-of-bounds write vulnerability while decoding improperly formed BinHex format archives. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.
CVE-2017-5444
- EPSS 2.7%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:38
A buffer overflow vulnerability while parsing "application/http-index-format" format content when the header contains improperly formatted data. This allows for an out-of-bounds read of data from memory. This vulnerability affects Thunderbird < 52.1,...
CVE-2017-5445
- EPSS 2.25%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:38
A vulnerability while parsing "application/http-index-format" format content where uninitialized values are used to create an array. This could allow the reading of uninitialized memory into the arrays affected. This vulnerability affects Thunderbird...
CVE-2017-5446
- EPSS 1.43%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:38
An out-of-bounds read when an HTTP/2 connection to a servers sends "DATA" frames with incorrect data content. This leads to a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Fi...
CVE-2017-5447
- EPSS 17.85%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:38
An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash and could allow an attacker to read otherwise inaccessible memory. This vulnerability affects Thunderbird < 52.1, Firefox ...
CVE-2017-5448
- EPSS 1.38%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:38
An out-of-bounds write in "ClearKeyDecryptor" while decrypting some Clearkey-encrypted media content. The "ClearKeyDecryptor" code runs within the Gecko Media Plugin (GMP) sandbox. If a second mechanism is found to escape the sandbox, this vulnerabil...
CVE-2017-5449
- EPSS 1.64%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:38
A possibly exploitable crash triggered during layout and manipulation of bidirectional unicode text in concert with CSS animations. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 52.1, and Firefox < 53.
CVE-2017-5451
- EPSS 0.59%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:39
A mechanism to spoof the addressbar through the user interaction on the addressbar and the "onblur" event. The event could be used by script to affect text display to make the loaded site appear to be different from the one actually loaded within the...
CVE-2017-5454
- EPSS 0.76%
- Veröffentlicht 11.06.2018 21:29:06
- Zuletzt bearbeitet 21.11.2024 03:27:39
A mechanism to bypass file system access protections in the sandbox to use the file picker to access different files than those selected in the file picker through the use of relative paths. This allows for read only access to the local file system. ...