- EPSS 2.46%
- Veröffentlicht 09.11.2011 11:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 7.0 and Thunderbird 7.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors...
- EPSS 5.06%
- Veröffentlicht 09.11.2011 11:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly allocate memory, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via...
- EPSS 0.23%
- Veröffentlicht 09.11.2011 11:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 8.0 and Thunderbird before 8.0 on Mac OS X do not properly interact with the GPU memory behavior of a certain driver for Intel integrated GPUs, which allows remote attackers to bypass the Same Origin Policy and read image data ...
- EPSS 19.73%
- Veröffentlicht 09.11.2011 11:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly handle links from SVG mpath elements to non-SVG elements, which allows remote attackers to cause a denial of service (memory corruption and application cras...
CVE-2011-2372
- EPSS 0.43%
- Veröffentlicht 29.09.2011 00:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not prevent the starting of a download in response to the holding of the Enter key, which allows user-assisted remote attackers to bypass intended ac...
- EPSS 1.88%
- Veröffentlicht 29.09.2011 00:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (memory corruption and application cra...
- EPSS 2.98%
- Veröffentlicht 29.09.2011 00:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitr...
CVE-2011-2999
- EPSS 0.72%
- Veröffentlicht 29.09.2011 00:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 3.6.23 and 4.x through 5, Thunderbird before 6.0, and SeaMonkey before 2.3 do not properly handle "location" as the name of a frame, which allows remote attackers to bypass the Same Origin Policy via a crafted web site, a diffe...
CVE-2011-3000
- EPSS 1.3%
- Veröffentlicht 29.09.2011 00:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not properly handle HTTP responses that contain multiple Location, Content-Length, or Content-Disposition headers, which makes it easier for remote a...
CVE-2011-3001
- EPSS 0.2%
- Veröffentlicht 29.09.2011 00:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not prevent manual add-on installation in response to the holding of the Enter key, which allows user-assisted remote attackers to bypass intended access restrictions ...