- EPSS 10.38%
- Veröffentlicht 11.12.2013 15:55:13
- Zuletzt bearbeitet 25.11.2025 17:50:16
Use-after-free vulnerability in the nsNodeUtils::LastRelease function in the table-editing user interface in the editor component in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows ...
- EPSS 10.4%
- Veröffentlicht 11.12.2013 15:55:13
- Zuletzt bearbeitet 25.11.2025 17:50:16
The nsGfxScrollFrameInner::IsLTR function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary code via crafted use of JavaScript code for ordere...
- EPSS 11.06%
- Veröffentlicht 11.12.2013 15:55:12
- Zuletzt bearbeitet 25.11.2025 17:50:16
Use-after-free vulnerability in the PresShell::DispatchSynthMouseMove function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary code or cause...
CVE-2013-5615
- EPSS 2.01%
- Veröffentlicht 11.12.2013 15:55:12
- Zuletzt bearbeitet 25.11.2025 17:50:16
The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does not properly enforce certain typeset restrictions on the generation of GetElementIC typed array stubs,...
CVE-2013-5616
- EPSS 2.87%
- Veröffentlicht 11.12.2013 15:55:12
- Zuletzt bearbeitet 25.11.2025 17:50:16
Use-after-free vulnerability in the nsEventListenerManager::HandleEventSubType function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary code...
- EPSS 2.75%
- Veröffentlicht 11.12.2013 15:55:07
- Zuletzt bearbeitet 25.11.2025 17:50:16
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allow remote attackers to cause a denial of service (memory corruption and app...
CVE-2011-1585
- EPSS 0.05%
- Veröffentlicht 08.06.2013 13:05:55
- Zuletzt bearbeitet 11.04.2025 00:51:21
The cifs_find_smb_ses function in fs/cifs/connect.c in the Linux kernel before 2.6.36 does not properly determine the associations between users and sessions, which allows local users to bypass CIFS share authentication by leveraging a mount of a sha...
CVE-2012-5830
- EPSS 1.45%
- Veröffentlicht 21.11.2012 12:55:03
- Zuletzt bearbeitet 11.04.2025 00:51:21
Use-after-free vulnerability in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 on Mac OS X allows remote attackers to execute arbitrary code via an...
CVE-2011-3026
- EPSS 28.67%
- Veröffentlicht 16.02.2012 20:55:04
- Zuletzt bearbeitet 11.04.2025 00:51:21
Integer overflow in libpng, as used in Google Chrome before 17.0.963.56, allows remote attackers to cause a denial of service or possibly have unspecified other impact via unknown vectors that trigger an integer truncation.
CVE-2010-3881
- EPSS 0.07%
- Veröffentlicht 23.12.2010 18:00:02
- Zuletzt bearbeitet 11.04.2025 00:51:21
arch/x86/kvm/x86.c in the Linux kernel before 2.6.36.2 does not initialize certain structure members, which allows local users to obtain potentially sensitive information from kernel stack memory via read operations on the /dev/kvm device.