Mozilla

Firefox

2920 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 5.73%
  • Veröffentlicht 11.06.2018 21:29:14
  • Zuletzt bearbeitet 25.11.2025 17:50:16

An integer overflow can occur during conversion of text to some Unicode character sets due to an unchecked length parameter. This vulnerability affects Firefox ESR < 52.7 and Thunderbird < 52.7.

  • EPSS 4.12%
  • Veröffentlicht 11.06.2018 21:29:14
  • Zuletzt bearbeitet 25.11.2025 17:50:16

Memory safety bugs were reported in Firefox ESR 52.6. These bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox ESR < 52.7 an...

  • EPSS 43.63%
  • Veröffentlicht 11.06.2018 21:29:14
  • Zuletzt bearbeitet 25.11.2025 17:50:16

An out of bounds memory write while processing Vorbis audio data was reported through the Pwn2Own contest. This vulnerability affects Firefox < 59.0.1, Firefox ESR < 52.7.2, and Thunderbird < 52.7.

  • EPSS 1.5%
  • Veröffentlicht 11.06.2018 21:29:14
  • Zuletzt bearbeitet 25.11.2025 17:50:16

The libtremor library has the same flaw as CVE-2018-5146. This library is used by Firefox in place of libvorbis on Android and ARM platforms. This vulnerability affects Firefox ESR < 52.7.2 and Firefox < 59.0.1.

  • EPSS 1.68%
  • Veröffentlicht 11.06.2018 21:29:14
  • Zuletzt bearbeitet 25.11.2025 17:50:16

A use-after-free vulnerability can occur in the compositor during certain graphics operations when a raw pointer is used instead of a reference counted one. This results in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52....

  • EPSS 4.12%
  • Veröffentlicht 11.06.2018 21:29:14
  • Zuletzt bearbeitet 25.11.2025 17:50:16

Memory safety bugs were reported in Firefox 59, Firefox ESR 52.7, and Thunderbird 52.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This v...

  • EPSS 3.91%
  • Veröffentlicht 11.06.2018 21:29:14
  • Zuletzt bearbeitet 21.11.2024 04:08:13

Memory safety bugs were reported in Firefox 59. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 60.

  • EPSS 0.07%
  • Veröffentlicht 11.06.2018 21:29:13
  • Zuletzt bearbeitet 21.11.2024 04:08:06

WebExtensions can bypass user prompts to first save and then open an arbitrarily downloaded file. This can result in an executable file running with local user privileges without explicit user consent. This vulnerability affects Firefox < 58.

  • EPSS 0.45%
  • Veröffentlicht 11.06.2018 21:29:13
  • Zuletzt bearbeitet 21.11.2024 04:08:07

Style editor traffic in the Developer Tools can be routed through a service worker hosted on a third party website if a user selects error links when these tools are open. This can allow style editor information used within Developer Tools to leak cr...

  • EPSS 1.16%
  • Veröffentlicht 11.06.2018 21:29:13
  • Zuletzt bearbeitet 21.11.2024 04:08:07

The printing process can bypass local access protections to read files available through symlinks, bypassing local file restrictions. The printing process requires files in a specific format so arbitrary data cannot be read but it is possible that so...