Redhat

Enterprise Linux

1715 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.05%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 25.11.2025 17:50:16

Using SVG filters that don't use the fixed point math implementation on a target iframe, a malicious page can extract pixel values from a targeted user. This can be used to extract history information and read text values across domains. This violate...

Exploit
  • EPSS 1.07%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 25.11.2025 17:50:16

Video files loaded video captions cross-origin without checking for the presence of CORS headers permitting such cross-origin use, leading to potential information disclosure for video captions. This vulnerability affects Firefox < 52, Firefox ESR < ...

Exploit
  • EPSS 2.53%
  • Veröffentlicht 11.06.2018 21:29:04
  • Zuletzt bearbeitet 25.11.2025 17:50:16

Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is managed for memory cleanup. This vulnerability affects Firefox < 52, Firefox ESR < 45.8, Thunderbird < 52...

  • EPSS 1.8%
  • Veröffentlicht 11.06.2018 21:29:03
  • Zuletzt bearbeitet 25.11.2025 17:50:16

A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

  • EPSS 2.44%
  • Veröffentlicht 11.06.2018 21:29:03
  • Zuletzt bearbeitet 25.11.2025 17:50:16

URLs containing certain unicode glyphs for alternative hyphens and quotes do not properly trigger punycode display, allowing for domain name spoofing attacks in the location bar. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and ...

Exploit
  • EPSS 1.19%
  • Veröffentlicht 11.06.2018 21:29:03
  • Zuletzt bearbeitet 25.11.2025 17:50:16

WebExtension scripts can use the "data:" protocol to affect pages loaded by other web extensions using this protocol, leading to potential data disclosure or privilege escalation in affected extensions. This vulnerability affects Firefox ESR < 45.7 a...

  • EPSS 1.75%
  • Veröffentlicht 11.06.2018 21:29:03
  • Zuletzt bearbeitet 25.11.2025 17:50:16

The JSON viewer in the Developer Tools uses insecure methods to create a communication channel for copying and viewing JSON or HTTP headers data, allowing for potential privilege escalation. This vulnerability affects Thunderbird < 45.7, Firefox ESR ...

Exploit
  • EPSS 1.84%
  • Veröffentlicht 11.06.2018 21:29:03
  • Zuletzt bearbeitet 25.11.2025 17:50:16

A use-after-free vulnerability in the Media Decoder when working with media files when some events are fired after the media elements are freed from memory. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

Exploit
  • EPSS 2.6%
  • Veröffentlicht 11.06.2018 21:29:02
  • Zuletzt bearbeitet 25.11.2025 17:50:16

Use-after-free resulting in potentially exploitable crash when manipulating DOM subtrees in the Editor. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.

Exploit
  • EPSS 36.42%
  • Veröffentlicht 11.06.2018 21:29:02
  • Zuletzt bearbeitet 25.11.2025 17:50:16

Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects Firefox < 50.1, Firefox ESR < 45.6, and Thunderbird < 45.6.