Search CVE reports
101 – 110 of 227 results
Some fixes available 15 of 21
Integer overflow in an array class in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allows remote attackers to execute arbitrary code...
5 affected packages
firefox, firefox-3.0, firefox-3.5, thunderbird, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 8 of 11
The nsDocShell::OnRedirectStateChange function in docshell/base/nsDocShell.cpp in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, and SeaMonkey before 2.0.6, allows remote attackers to spoof the SSL security status of...
4 affected packages
firefox, firefox-3.0, firefox-3.5, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 10 of 18
The nsIScriptableUnescapeHTML.parseFragment method in the ParanoidFragmentSink protection mechanism in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, Thunderbird before 3.1.8, and SeaMonkey before 2.0.12 does not properly...
6 affected packages
firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 8 of 11
Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 do not properly implement access to a content object through a SafeJSObjectWrapper (aka SJOW) wrapper, which allows remote attackers to execute arbitrary...
4 affected packages
firefox, firefox-3.0, firefox-3.5, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 8 of 11
Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, and SeaMonkey before 2.0.6, allows remote attackers to execute arbitrary code via plugin content with many parameter elements.
4 affected packages
firefox, firefox-3.0, firefox-3.5, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 8 of 11
The importScripts Web Worker method in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 does not verify that content is valid JavaScript...
4 affected packages
firefox, firefox-3.0, firefox-3.5, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 8 of 11
js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute...
4 affected packages
firefox, firefox-3.0, firefox-3.5, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 8 of 11
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 allow remote attackers to...
4 affected packages
firefox, firefox-3.0, firefox-3.5, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 8 of 11
intl/uconv/util/nsUnicodeDecodeHelper.cpp in Mozilla Firefox before 3.6.7 and Thunderbird before 3.1.1 inserts a U+FFFD sequence into text in certain circumstances involving undefined positions, which might make it easier...
4 affected packages
firefox, firefox-3.0, firefox-3.5, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 8 of 11
Use-after-free vulnerability in the NodeIterator implementation in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, and SeaMonkey before 2.0.6, allows remote attackers to execute arbitrary code via a crafted NodeFilter...
4 affected packages
firefox, firefox-3.0, firefox-3.5, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
firefox-3.0 | — | — | — | — |
firefox-3.5 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |