Search CVE reports


Toggle filters

1 – 10 of 227 results


CVE-2011-3000

Medium priority

Some fixes available 9 of 18

Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not properly handle HTTP responses that contain multiple Location, Content-Length, or Content-Disposition headers, which makes it...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2999

Medium priority

Some fixes available 9 of 18

Mozilla Firefox before 3.6.23 and 4.x through 5, Thunderbird before 6.0, and SeaMonkey before 2.3 do not properly handle "location" as the name of a frame, which allows remote attackers to bypass the Same Origin Policy via...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2996

Medium priority

Some fixes available 8 of 18

Unspecified vulnerability in the plugin API in Mozilla Firefox 3.6.x before 3.6.23 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2995

Medium priority

Some fixes available 9 of 18

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (memory corruption...

7 affected packages

firefox-3.0, firefox, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox-3.0
firefox
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2993

Medium priority

Some fixes available 1 of 7

The implementation of digital signatures for JAR files in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, and possibly other products does not prevent calls from unsigned JavaScript code to signed code, which allows...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2992

Medium priority

Some fixes available 1 of 7

The Ogg reader in the browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products allows remote attackers to cause a denial of service (memory corruption...

7 affected packages

seamonkey, firefox, firefox-3.0, firefox-3.5, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
seamonkey
firefox
firefox-3.0
firefox-3.5
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2991

Medium priority

Some fixes available 1 of 7

The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly implement JavaScript, which allows remote attackers to cause a denial of service...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2990

Medium priority

Some fixes available 1 of 7

The implementation of Content Security Policy (CSP) violation reports in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, and possibly other products does not remove proxy-authorization credentials from the listed request...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2989

Medium priority

Some fixes available 1 of 7

The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly implement WebGL, which allows remote attackers to cause a denial of service (memory...

7 affected packages

firefox-3.0, firefox, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox-3.0
firefox
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages

CVE-2011-2988

Medium priority

Some fixes available 1 of 7

Buffer overflow in an unspecified string class in the WebGL shader implementation in Mozilla Firefox 4.x through 5, Thunderbird before 6, SeaMonkey 2.x before 2.3, and possibly other products allows remote attackers to execute...

7 affected packages

firefox, firefox-3.0, firefox-3.5, seamonkey, thunderbird...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
firefox-3.0
firefox-3.5
seamonkey
thunderbird
xulrunner-1.9.2
xulrunner-2.0
Show all 7 packages Show less packages