Mozilla

Firefox

3041 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.7%
  • Veröffentlicht 13.03.2016 18:59:26
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The Machine::Code::decoder::analysis::set_ref function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to execute arbitrary code or cause a denial of service (stack memory c...

  • EPSS 0.53%
  • Veröffentlicht 13.03.2016 18:59:25
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Use-after-free vulnerability in the DesktopDisplayDevice class in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vect...

  • EPSS 0.59%
  • Veröffentlicht 13.03.2016 18:59:24
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Multiple race conditions in dom/media/systemservices/CamerasChild.cpp in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified ot...

  • EPSS 0.49%
  • Veröffentlicht 13.03.2016 18:59:23
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The nsScannerString::AppendUnicodeTo function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 does not verify that memory allocation succeeds, which allows remote attackers to execute arbitrary code or cause a denial of service (out-o...

  • EPSS 1%
  • Veröffentlicht 13.03.2016 18:59:22
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in the GetStaticInstance function in the WebRTC implementation in Mozilla Firefox before 45.0 might allow remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via unspecified vectors.

  • EPSS 0.62%
  • Veröffentlicht 13.03.2016 18:59:21
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Race condition in libvpx in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown vectors.

  • EPSS 0.57%
  • Veröffentlicht 13.03.2016 18:59:20
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The I420VideoFrame::CreateFrame function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows omits an unspecified status check, which might allow remote attackers to cause a denial of service (memory corruption) or possibly have ot...

  • EPSS 0.57%
  • Veröffentlicht 13.03.2016 18:59:19
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer underflow in the srtp_unprotect function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknow...

  • EPSS 0.47%
  • Veröffentlicht 13.03.2016 18:59:18
  • Zuletzt bearbeitet 12.04.2025 10:46:40

The setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.6.1, allows remote attackers to cause a denial of service (out-of-bounds write) or possibly have unspecified other impact via a cra...

  • EPSS 1.81%
  • Veröffentlicht 13.03.2016 18:59:17
  • Zuletzt bearbeitet 12.04.2025 10:46:40

Integer underflow in Brotli, as used in Mozilla Firefox before 45.0, allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via crafted data with brotli compression.