CVE-2010-3183
- EPSS 8.27%
- Veröffentlicht 21.10.2010 19:00:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The LookupGetterOrSetter function in js3250.dll in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 does not properly support window.__lookupGetter__ function calls tha...
CVE-2010-3170
- EPSS 1.16%
- Veröffentlicht 21.10.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 recognize a wildcard IP address in the subject's Common Name field of an X.509 certificate, which might allow man-in-th...
CVE-2010-3173
- EPSS 2.35%
- Veröffentlicht 21.10.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The SSL implementation in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 does not properly set the minimum key length for Diffie-Hellman Ephemeral (DHE) mode, which m...
CVE-2010-3174
- EPSS 3.09%
- Veröffentlicht 21.10.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Unspecified vulnerability in the browser engine in Mozilla Firefox 3.5.x before 3.5.14, Thunderbird before 3.0.9, and SeaMonkey before 2.0.9 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly ex...
CVE-2010-3175
- EPSS 2.91%
- Veröffentlicht 21.10.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.6.x before 3.6.11 and Thunderbird 3.1.x before 3.1.5 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arb...
CVE-2010-3176
- EPSS 5.14%
- Veröffentlicht 21.10.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 allow remote attackers to cause a denial of service...
CVE-2010-3171
- EPSS 7.92%
- Veröffentlicht 15.09.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Math.random function in the JavaScript implementation in Mozilla Firefox 3.5.10 through 3.5.11, 3.6.4 through 3.6.8, and 4.0 Beta1 uses a random number generator that is seeded only once per document object, which makes it easier for remote attac...
CVE-2010-3399
- EPSS 0.64%
- Veröffentlicht 15.09.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The js_InitRandom function in the JavaScript implementation in Mozilla Firefox 3.5.10 through 3.5.11, 3.6.4 through 3.6.8, and 4.0 Beta1 uses a context pointer in conjunction with its successor pointer for seeding of a random number generator, which ...
CVE-2010-3400
- EPSS 0.24%
- Veröffentlicht 15.09.2010 20:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
The js_InitRandom function in the JavaScript implementation in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and SeaMonkey before 2.0.5, uses the current time for seeding of a random number generator, which makes it easier for remote at...
CVE-2010-2760
- EPSS 4.16%
- Veröffentlicht 09.09.2010 19:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the nsTreeSelection function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 might allow remote attackers to execute arbitrary code v...