CVE-2012-2872
- EPSS 0.36%
- Published 31.08.2012 19:55:01
- Last modified 11.04.2025 00:51:21
Cross-site scripting (XSS) vulnerability in an SSL interstitial page in Google Chrome before 21.0.1180.89 allows remote attackers to inject arbitrary web script or HTML via unspecified vectors.
CVE-2012-2865
- EPSS 0.97%
- Published 31.08.2012 19:55:00
- Last modified 11.04.2025 00:51:21
Google Chrome before 21.0.1180.89 does not properly perform line breaking, which allows remote attackers to cause a denial of service (out-of-bounds read) via a crafted document.
CVE-2012-2866
- EPSS 1.62%
- Published 31.08.2012 19:55:00
- Last modified 11.04.2025 00:51:21
Google Chrome before 21.0.1180.89 does not properly perform a cast of an unspecified variable during handling of run-in elements, which allows remote attackers to cause a denial of service or possibly have unknown other impact via a crafted document.
- EPSS 1.38%
- Published 31.08.2012 19:55:00
- Last modified 11.04.2025 00:51:21
The SPDY implementation in Google Chrome before 21.0.1180.89 allows remote attackers to cause a denial of service (application crash) via unspecified vectors.
CVE-2012-2868
- EPSS 0.92%
- Published 31.08.2012 19:55:00
- Last modified 11.04.2025 00:51:21
Race condition in Google Chrome before 21.0.1180.89 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors involving improper interaction between worker processes and an XMLHttpRequest (aka XHR) obj...
- EPSS 4.55%
- Published 29.08.2012 10:56:41
- Last modified 11.04.2025 00:51:21
The format-number functionality in the XSLT implementation in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote attackers to obtain sensit...
CVE-2012-3976
- EPSS 0.78%
- Published 29.08.2012 10:56:41
- Last modified 11.04.2025 00:51:21
Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, and SeaMonkey before 2.12 do not properly handle onLocationChange events during navigation between different https sites, which allows remote attackers to spoof the X.509 certificate inform...
- EPSS 3.31%
- Published 29.08.2012 10:56:40
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in the gfxTextRun::CanBreakLineBefore function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote attackers...
- EPSS 3.31%
- Published 29.08.2012 10:56:40
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in the PresShell::CompleteMove function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote attackers to exe...
- EPSS 3.17%
- Published 29.08.2012 10:56:40
- Last modified 11.04.2025 00:51:21
Use-after-free vulnerability in the nsHTMLSelectElement::SubmitNamesValues function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 allows remote a...