CVE-2017-5411
- EPSS 0.74%
- Veröffentlicht 11.06.2018 21:29:04
- Zuletzt bearbeitet 21.11.2024 03:27:34
A use-after-free can occur during buffer storage operations within the ANGLE graphics library, used for WebGL content. The buffer storage can be freed while still in use in some circumstances, leading to a potentially exploitable crash. Note: This is...
CVE-2017-5412
- EPSS 0.36%
- Veröffentlicht 11.06.2018 21:29:04
- Zuletzt bearbeitet 21.11.2024 03:27:34
A buffer overflow read during SVG filter color value operations, resulting in data exposure. This vulnerability affects Firefox < 52 and Thunderbird < 52.
CVE-2017-5413
- EPSS 0.56%
- Veröffentlicht 11.06.2018 21:29:04
- Zuletzt bearbeitet 21.11.2024 03:27:34
A segmentation fault can occur during some bidirectional layout operations. This vulnerability affects Firefox < 52 and Thunderbird < 52.
CVE-2017-5414
- EPSS 0.13%
- Veröffentlicht 11.06.2018 21:29:04
- Zuletzt bearbeitet 21.11.2024 03:27:34
The file picker dialog can choose and display the wrong local default directory when instantiated. On some operating systems, this can lead to information disclosure, such as the operating system or the local account name. This vulnerability affects ...
CVE-2017-5416
- EPSS 0.86%
- Veröffentlicht 11.06.2018 21:29:04
- Zuletzt bearbeitet 21.11.2024 03:27:34
In certain circumstances a networking event listener can be prematurely released. This appears to result in a null dereference in practice. This vulnerability affects Firefox < 52 and Thunderbird < 52.
CVE-2017-5380
- EPSS 1.8%
- Veröffentlicht 11.06.2018 21:29:03
- Zuletzt bearbeitet 25.11.2025 17:50:16
A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.
CVE-2017-5383
- EPSS 2.44%
- Veröffentlicht 11.06.2018 21:29:03
- Zuletzt bearbeitet 25.11.2025 17:50:16
URLs containing certain unicode glyphs for alternative hyphens and quotes do not properly trigger punycode display, allowing for domain name spoofing attacks in the location bar. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and ...
CVE-2017-5390
- EPSS 1.75%
- Veröffentlicht 11.06.2018 21:29:03
- Zuletzt bearbeitet 25.11.2025 17:50:16
The JSON viewer in the Developer Tools uses insecure methods to create a communication channel for copying and viewing JSON or HTTP headers data, allowing for potential privilege escalation. This vulnerability affects Thunderbird < 45.7, Firefox ESR ...
CVE-2017-5396
- EPSS 1.84%
- Veröffentlicht 11.06.2018 21:29:03
- Zuletzt bearbeitet 25.11.2025 17:50:16
A use-after-free vulnerability in the Media Decoder when working with media files when some events are fired after the media elements are freed from memory. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.
- EPSS 3.27%
- Veröffentlicht 11.06.2018 21:29:03
- Zuletzt bearbeitet 25.11.2025 17:50:16
Memory safety bugs were reported in Thunderbird 45.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 52,...