CVE-2013-0800
- EPSS 2.8%
- Veröffentlicht 03.04.2013 11:56:21
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer signedness error in the pixman_fill_sse2 function in pixman-sse2.c in Pixman, as distributed with Cairo and used in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, Thunderbird ESR 17.x before 17.0.5, Se...
CVE-2013-2566
- EPSS 90.32%
- Veröffentlicht 15.03.2013 21:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The RC4 algorithm, as used in the TLS protocol and SSL protocol, has many single-byte biases, which makes it easier for remote attackers to conduct plaintext-recovery attacks via statistical analysis of ciphertext in a large number of sessions that u...
CVE-2013-0787
- EPSS 6.17%
- Veröffentlicht 11.03.2013 10:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the nsEditor::IsPreformatted function in editor/libeditor/base/nsEditor.cpp in Mozilla Firefox before 19.0.2, Firefox ESR 17.x before 17.0.4, Thunderbird before 17.0.4, Thunderbird ESR 17.x before 17.0.4, and SeaMonkey...
CVE-2013-0765
- EPSS 1.42%
- Veröffentlicht 19.02.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 do not prevent multiple wrapping of WebIDL objects, which allows remote attackers to bypass intended access restrictions via unspecified vectors.
CVE-2013-0772
- EPSS 1.29%
- Veröffentlicht 19.02.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The RasterImage::DrawFrameTo function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read an...
CVE-2013-0773
- EPSS 1.52%
- Veröffentlicht 19.02.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The Chrome Object Wrapper (COW) and System Only Wrapper (SOW) implementations in Mozilla Firefox before 19.0, Firefox ESR 17.x before 17.0.3, Thunderbird before 17.0.3, Thunderbird ESR 17.x before 17.0.3, and SeaMonkey before 2.16 do not prevent modi...
CVE-2013-0774
- EPSS 0.55%
- Veröffentlicht 19.02.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 19.0, Firefox ESR 17.x before 17.0.3, Thunderbird before 17.0.3, Thunderbird ESR 17.x before 17.0.3, and SeaMonkey before 2.16 do not prevent JavaScript workers from reading the browser-profile directory name, which has unspeci...
CVE-2013-0775
- EPSS 0.91%
- Veröffentlicht 19.02.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the nsImageLoadingContent::OnStopContainer function in Mozilla Firefox before 19.0, Firefox ESR 17.x before 17.0.3, Thunderbird before 17.0.3, Thunderbird ESR 17.x before 17.0.3, and SeaMonkey before 2.16 allows remote...
- EPSS 0.65%
- Veröffentlicht 19.02.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 19.0, Firefox ESR 17.x before 17.0.3, Thunderbird before 17.0.3, Thunderbird ESR 17.x before 17.0.3, and SeaMonkey before 2.16 allow man-in-the-middle attackers to spoof the address bar by operating a proxy server that provides...
CVE-2013-0777
- EPSS 1.4%
- Veröffentlicht 19.02.2013 23:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the nsDisplayBoxShadowOuter::Paint function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attackers to execute arbitrary code or cause a denial of service (heap memo...