Mozilla

Firefox

2867 vulnerabilities found.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.79%
  • Published 13.03.2016 18:59:32
  • Last modified 12.04.2025 10:46:40

CachedCmap.cpp in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other impact via a crafted Graphi...

  • EPSS 0.79%
  • Published 13.03.2016 18:59:31
  • Last modified 12.04.2025 10:46:40

The graphite2::Slot::getAttr function in Slot.cpp in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecifie...

  • EPSS 0.79%
  • Published 13.03.2016 18:59:30
  • Last modified 12.04.2025 10:46:40

The graphite2::GlyphCache::glyph function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service (buffer over-read) or possibly have unspecified other ...

  • EPSS 0.79%
  • Published 13.03.2016 18:59:29
  • Last modified 12.04.2025 10:46:40

The graphite2::TtfUtil::GetTableInfo function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, does not initialize memory for an unspecified data structure, which allows remote attackers to cause a ...

  • EPSS 0.91%
  • Published 13.03.2016 18:59:28
  • Last modified 12.04.2025 10:46:40

Use-after-free vulnerability in the PK11_ImportDERPrivateKeyInfoAndReturnKey function in Mozilla Network Security Services (NSS) before 3.21.1, as used in Mozilla Firefox before 45.0, allows remote attackers to cause a denial of service or possibly h...

  • EPSS 2.75%
  • Published 13.03.2016 18:59:27
  • Last modified 12.04.2025 10:46:40

Use-after-free vulnerability in the ssl3_HandleECDHServerKeyExchange function in Mozilla Network Security Services (NSS) before 3.21, as used in Mozilla Firefox before 44.0, allows remote attackers to cause a denial of service or possibly have unspec...

  • EPSS 0.96%
  • Published 13.03.2016 18:59:26
  • Last modified 12.04.2025 10:46:40

The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to execute arbitrary code or cause a denial of service (stack memory c...

  • EPSS 0.53%
  • Published 13.03.2016 18:59:25
  • Last modified 12.04.2025 10:46:40

Use-after-free vulnerability in the DesktopDisplayDevice class in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vect...

  • EPSS 0.59%
  • Published 13.03.2016 18:59:24
  • Last modified 12.04.2025 10:46:40

Multiple race conditions in dom/media/systemservices/CamerasChild.cpp in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified ot...

  • EPSS 0.68%
  • Published 13.03.2016 18:59:23
  • Last modified 12.04.2025 10:46:40

The nsScannerString::AppendUnicodeTo function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 does not verify that memory allocation succeeds, which allows remote attackers to execute arbitrary code or cause a denial of service (out-o...