CVE-2023-4585
- EPSS 0.19%
- Published 11.09.2023 09:15:09
- Last modified 21.11.2024 08:35:29
Memory safety bugs present in Firefox 116, Firefox ESR 115.1, and Thunderbird 115.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vu...
CVE-2023-4573
- EPSS 0.15%
- Published 11.09.2023 08:15:07
- Last modified 21.11.2024 08:35:27
When receiving rendering data over IPC `mStream` could have been destroyed when initialized, which could have led to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox < 117, Firefox ESR < 102.15, Firefox ESR...
CVE-2022-46884
- EPSS 0.16%
- Published 24.08.2023 17:15:08
- Last modified 21.11.2024 07:31:14
A potential use-after-free vulnerability existed in SVG Images if the Refresh Driver was destroyed at an inopportune time. This could have lead to memory corruption or a potentially exploitable crash. *Note*: This advisory was added on December 13th...
CVE-2023-4056
- EPSS 0.51%
- Published 01.08.2023 16:15:10
- Last modified 21.11.2024 08:34:18
Memory safety bugs present in Firefox 115, Firefox ESR 115.0, Firefox ESR 102.13, Thunderbird 115.0, and Thunderbird 102.13. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been ...
CVE-2023-4057
- EPSS 0.17%
- Published 01.08.2023 16:15:10
- Last modified 21.11.2024 08:34:19
Memory safety bugs present in Firefox 115, Firefox ESR 115.0, and Thunderbird 115.0. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vu...
CVE-2023-4058
- EPSS 0.31%
- Published 01.08.2023 16:15:10
- Last modified 21.11.2024 08:34:19
Memory safety bugs present in Firefox 115. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 116.
CVE-2023-4054
- EPSS 0.03%
- Published 01.08.2023 16:15:09
- Last modified 21.11.2024 08:34:18
When opening appref-ms files, Firefox did not warn the user that these files may contain malicious code. *This bug only affects Firefox on Windows. Other operating systems are unaffected.* This vulnerability affects Firefox < 116, Firefox ESR < 102....
CVE-2023-4055
- EPSS 0.27%
- Published 01.08.2023 16:15:09
- Last modified 21.11.2024 08:34:18
When the number of cookies per domain was exceeded in `document.cookie`, the actual cookie jar sent to the host was no longer consistent with expected cookie jar state. This could have caused requests to be sent with some cookies missing. This vulner...
CVE-2023-4049
- EPSS 0.23%
- Published 01.08.2023 15:15:10
- Last modified 21.11.2024 08:34:17
Race conditions in reference counting code were found through code inspection. These could have resulted in potentially exploitable use-after-free vulnerabilities. This vulnerability affects Firefox < 116, Firefox ESR < 102.14, and Firefox ESR < 115....
CVE-2023-4050
- EPSS 7.98%
- Published 01.08.2023 15:15:10
- Last modified 21.11.2024 08:34:18
In some cases, an untrusted input stream was copied to a stack buffer without checking its size. This resulted in a potentially exploitable crash which could have led to a sandbox escape. This vulnerability affects Firefox < 116, Firefox ESR < 102.14...