Mozilla

Firefox

2920 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
Exploit
  • EPSS 1.48%
  • Veröffentlicht 11.06.2018 21:29:07
  • Zuletzt bearbeitet 25.11.2025 17:50:16

An out-of-bounds read in WebGL with a maliciously crafted "ImageInfo" object during WebGL operations. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird < 52.2.

  • EPSS 0.77%
  • Veröffentlicht 11.06.2018 21:29:07
  • Zuletzt bearbeitet 25.11.2025 17:50:16

The Firefox installer on Windows can be made to load malicious DLL files stored in the same directory as the installer when it is run. This allows privileged execution if the installer is run with elevated privileges. Note: This attack only affects W...

Exploit
  • EPSS 2.02%
  • Veröffentlicht 11.06.2018 21:29:06
  • Zuletzt bearbeitet 25.11.2025 17:50:16

A use-after-free vulnerability when holding a selection during scroll events. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.

  • EPSS 2.02%
  • Veröffentlicht 11.06.2018 21:29:06
  • Zuletzt bearbeitet 25.11.2025 17:50:16

A use-after-free vulnerability during changes in style when manipulating DOM elements. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.

Exploit
  • EPSS 2.02%
  • Veröffentlicht 11.06.2018 21:29:06
  • Zuletzt bearbeitet 25.11.2025 17:50:16

An out-of-bounds write vulnerability while decoding improperly formed BinHex format archives. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.

  • EPSS 2.7%
  • Veröffentlicht 11.06.2018 21:29:06
  • Zuletzt bearbeitet 25.11.2025 17:50:16

A buffer overflow vulnerability while parsing "application/http-index-format" format content when the header contains improperly formatted data. This allows for an out-of-bounds read of data from memory. This vulnerability affects Thunderbird < 52.1,...

Exploit
  • EPSS 2.25%
  • Veröffentlicht 11.06.2018 21:29:06
  • Zuletzt bearbeitet 25.11.2025 17:50:16

A vulnerability while parsing "application/http-index-format" format content where uninitialized values are used to create an array. This could allow the reading of uninitialized memory into the arrays affected. This vulnerability affects Thunderbird...

Exploit
  • EPSS 1.43%
  • Veröffentlicht 11.06.2018 21:29:06
  • Zuletzt bearbeitet 25.11.2025 17:50:16

An out-of-bounds read when an HTTP/2 connection to a servers sends "DATA" frames with incorrect data content. This leads to a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Fi...

Exploit
  • EPSS 17.85%
  • Veröffentlicht 11.06.2018 21:29:06
  • Zuletzt bearbeitet 25.11.2025 17:50:16

An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash and could allow an attacker to read otherwise inaccessible memory. This vulnerability affects Thunderbird < 52.1, Firefox ...

  • EPSS 1.38%
  • Veröffentlicht 11.06.2018 21:29:06
  • Zuletzt bearbeitet 25.11.2025 17:50:16

An out-of-bounds write in "ClearKeyDecryptor" while decrypting some Clearkey-encrypted media content. The "ClearKeyDecryptor" code runs within the Gecko Media Plugin (GMP) sandbox. If a second mechanism is found to escape the sandbox, this vulnerabil...