Search CVE reports


Toggle filters

21 – 30 of 227 results


CVE-2011-2374

Medium priority

Some fixes available 9 of 19

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, and Thunderbird before 3.1.11, allow remote attackers to cause a denial of service (memory corruption...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2373

Medium priority

Some fixes available 9 of 19

Use-after-free vulnerability in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14, when JavaScript is disabled, allows remote attackers to execute arbitrary code via a...

7 affected packages

firefox-3.0, firefox, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox-3.0
firefox
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2372

Medium priority

Some fixes available 9 of 18

Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not prevent the starting of a download in response to the holding of the Enter key, which allows user-assisted remote attackers...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2371

Medium priority

Some fixes available 9 of 19

Integer overflow in the Array.reduceRight method in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allows remote attackers to execute arbitrary code via vectors...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2370

Low priority

Some fixes available 1 of 7

Mozilla Firefox before 5.0 does not properly enforce the whitelist for the xpinstall functionality, which allows remote attackers to trigger an installation dialog for a (1) add-on or (2) theme via unspecified vectors.

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2369

Low priority

Some fixes available 1 of 7

Cross-site scripting (XSS) vulnerability in Mozilla Firefox 4.x through 4.0.1 allows remote attackers to inject arbitrary web script or HTML via an SVG element containing an HTML-encoded entity.

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2368

Medium priority

Some fixes available 1 of 7

The WebGL implementation in Mozilla Firefox 4.x through 4.0.1 does not properly restrict write operations, which allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors.

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2367

Low priority

Some fixes available 1 of 7

The WebGL implementation in Mozilla Firefox 4.x through 4.0.1 does not properly restrict read operations, which allows remote attackers to obtain sensitive information from GPU memory associated with an arbitrary process, or cause...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2366

Low priority

Some fixes available 1 of 7

Mozilla Gecko before 5.0, as used in Firefox before 5.0 and Thunderbird before 5.0, does not block use of a cross-domain image as a WebGL texture, which allows remote attackers to obtain approximate copies of arbitrary images via...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2365

Medium priority

Some fixes available 7 of 15

Unspecified vulnerability in the browser engine in Mozilla Firefox 3.6.x before 3.6.18 and Thunderbird before 3.1.11 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages