CVE-2017-5376
- EPSS 1.89%
- Veröffentlicht 11.06.2018 21:29:02
- Zuletzt bearbeitet 25.11.2025 17:50:16
Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.
CVE-2017-5377
- EPSS 1.94%
- Veröffentlicht 11.06.2018 21:29:02
- Zuletzt bearbeitet 21.11.2024 03:27:28
A memory corruption vulnerability in Skia that can occur when using transforms to make gradients, resulting in a potentially exploitable crash. This vulnerability affects Firefox < 51.
CVE-2017-5378
- EPSS 1.8%
- Veröffentlicht 11.06.2018 21:29:02
- Zuletzt bearbeitet 25.11.2025 17:50:16
Hashed codes of JavaScript objects are shared between pages. This allows for pointer leaks because an object's address can be discovered through hash codes, and also allows for data leakage of an object's content using these hash codes. This vulnerab...
CVE-2017-5379
- EPSS 1.75%
- Veröffentlicht 11.06.2018 21:29:02
- Zuletzt bearbeitet 21.11.2024 03:27:29
Use-after-free vulnerability in Web Animations when interacting with cycle collection found through fuzzing. This vulnerability affects Firefox < 51.
CVE-2016-9064
- EPSS 0.27%
- Veröffentlicht 11.06.2018 21:29:01
- Zuletzt bearbeitet 25.11.2025 17:50:16
Add-on updates failed to verify that the add-on ID inside the signed package matched the ID of the add-on being updated. An attacker who could perform a man-in-the-middle attack on the user's connection to the update server and defeat the certificate...
CVE-2016-9065
- EPSS 0.77%
- Veröffentlicht 11.06.2018 21:29:01
- Zuletzt bearbeitet 21.11.2024 03:00:31
The location bar in Firefox for Android can be spoofed by forcing a user into fullscreen mode, blocking its exiting, and creating of a fake location bar without any user notification. Note: This issue only affects Firefox for Android. Other versions ...
CVE-2016-9066
- EPSS 20.61%
- Veröffentlicht 11.06.2018 21:29:01
- Zuletzt bearbeitet 25.11.2025 17:50:16
A buffer overflow resulting in a potentially exploitable crash due to memory allocation issues when handling large amounts of incoming data. This vulnerability affects Thunderbird < 45.5, Firefox ESR < 45.5, and Firefox < 50.
CVE-2016-9067
- EPSS 1.36%
- Veröffentlicht 11.06.2018 21:29:01
- Zuletzt bearbeitet 21.11.2024 03:00:32
Two use-after-free errors during DOM operations resulting in potentially exploitable crashes. This vulnerability affects Firefox < 50.
CVE-2016-9068
- EPSS 1.72%
- Veröffentlicht 11.06.2018 21:29:01
- Zuletzt bearbeitet 21.11.2024 03:00:32
A use-after-free during web animations when working with timelines resulting in a potentially exploitable crash. This vulnerability affects Firefox < 50.
- EPSS 0.73%
- Veröffentlicht 11.06.2018 21:29:01
- Zuletzt bearbeitet 21.11.2024 03:00:32
A maliciously crafted page loaded to the sidebar through a bookmark can reference a privileged chrome window and engage in limited JavaScript operations violating cross-origin protections. This vulnerability affects Firefox < 50.