CVE-2012-4195
- EPSS 0.96%
- Veröffentlicht 29.10.2012 18:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
The nsLocation::CheckURL function in Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 does not properly determine the calling document and prin...
CVE-2012-4196
- EPSS 0.96%
- Veröffentlicht 29.10.2012 18:55:01
- Zuletzt bearbeitet 11.04.2025 00:51:21
Mozilla Firefox before 16.0.2, Firefox ESR 10.x before 10.0.10, Thunderbird before 16.0.2, Thunderbird ESR 10.x before 10.0.10, and SeaMonkey before 2.13.2 allow remote attackers to bypass the Same Origin Policy and read the Location object via a pro...
CVE-2012-4183
- EPSS 2.72%
- Veröffentlicht 10.10.2012 17:55:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in the DOMSVGTests::GetRequiredFeatures function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attacke...
CVE-2012-3489
- EPSS 1.04%
- Veröffentlicht 03.10.2012 21:55:00
- Zuletzt bearbeitet 11.04.2025 00:51:21
The xml_parse function in the libxml2 support in the core server component in PostgreSQL 8.3 before 8.3.20, 8.4 before 8.4.13, 9.0 before 9.0.9, and 9.1 before 9.1.5 allows remote authenticated users to determine the existence of arbitrary files or U...
CVE-2012-2874
- EPSS 0.89%
- Veröffentlicht 26.09.2012 10:56:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Skia, as used in Google Chrome before 22.0.1229.79, allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors that trigger an out-of-bounds write operation, a different vulnerability than CVE-2012-2883...
CVE-2012-2876
- EPSS 0.97%
- Veröffentlicht 26.09.2012 10:56:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Buffer overflow in the SSE2 optimization functionality in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors.
- EPSS 0.89%
- Veröffentlicht 26.09.2012 10:56:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
The extension system in Google Chrome before 22.0.1229.79 does not properly handle modal dialogs, which allows remote attackers to cause a denial of service (application crash) via unspecified vectors.
CVE-2012-2878
- EPSS 0.89%
- Veröffentlicht 26.09.2012 10:56:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to plug-in handling.
CVE-2012-2879
- EPSS 0.97%
- Veröffentlicht 26.09.2012 10:56:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service (DOM topology corruption) via a crafted document.
CVE-2012-2880
- EPSS 0.69%
- Veröffentlicht 26.09.2012 10:56:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Race condition in Google Chrome before 22.0.1229.79 allows remote attackers to cause a denial of service or possibly have unspecified other impact via vectors related to the plug-in paint buffer.