Vulnerability index

Browse CVEs

7,937 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Use After FreeCWE-416 × clear
Debian Linux CRITICAL 9.8
CVE-2017-7749

A use-after-free vulnerability when using an incorrect URL during the reloading of a docshell. This results in a potentially exploitable crash. This …

Fix: 52.2.0 / 54.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-7750

A use-after-free vulnerability during video control operations when a "<track>" element holds a reference to an older window if that window has been …

Fix: 52.2.0 / 54.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-7751

A use-after-free vulnerability with content viewer listeners that results in a potentially exploitable crash. This vulnerability affects Firefox < 54…

Fix: 52.2.0 / 54.0+
Fix from $2,300 2018-06-11
Debian Linux HIGH 8.8
CVE-2017-7752

A use-after-free vulnerability during specific user interactions with the input method editor (IME) in some languages due to how events are handled. …

Fix: 52.2.0 / 54.0+
Fix from $1,950 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5441

A use-after-free vulnerability when holding a selection during scroll events. This results in a potentially exploitable crash. This vulnerability aff…

Fix: 45.9.0 / 53.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5442

A use-after-free vulnerability during changes in style when manipulating DOM elements. This results in a potentially exploitable crash. This vulnerab…

Fix: 45.9.0 / 53.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.1
CVE-2017-5447EPSS 17%

An out-of-bounds read during the processing of glyph widths during text layout. This results in a potentially exploitable crash and could allow an at…

Fix: 45.9.0 / 53.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5432

A use-after-free vulnerability occurs during certain text input selection resulting in a potentially exploitable crash. This vulnerability affects Th…

Fix: 45.9.0 / 53.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5433

A use-after-free vulnerability in SMIL animation functions occurs when pointers to animation elements in an array are dropped from the animation cont…

Fix: 45.9.0 / 53.0+
Fix from $2,300 2018-06-11
Enterprise Linux Desktop CRITICAL 9.8
CVE-2017-5434

A use-after-free vulnerability occurs when redirecting focus handling which results in a potentially exploitable crash. This vulnerability affects Th…

Fix: 45.9.0 / 52.1.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5435

A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This results in a potentially expl…

Fix: 45.9.0 / 53.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5438

A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during handling. This results in a pote…

Fix: 45.9.0 / 53.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5439

A use-after-free vulnerability during XSLT processing due to poor handling of template parameters. This results in a potentially exploitable crash. T…

Fix: 45.9.0 / 52.1.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5440

A use-after-free vulnerability during XSLT processing due to a failure to propagate error conditions during matching while evaluating context, leadin…

Fix: 45.9.0 / 53.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5402

A use-after-free can occur when events are fired for a "FontFace" object after the object has been already been destroyed while working with fonts. T…

Fix: 45.8.0 / 52.0+
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-5403

When adding a range to an object in the DOM, it is possible to use "addRange" to add the range to an incorrect root object. This triggers a use-after…

Fix: 52.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5404EPSS 17%

A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This…

Fix: 45.8.0 / 52.0+
Fix from $2,300 2018-06-11
Firefox HIGH 7.5
CVE-2017-5411

A use-after-free can occur during buffer storage operations within the ANGLE graphics library, used for WebGL content. The buffer storage can be free…

Fix: 52.0+
Fix from $1,950 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5380

A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR <…

Fix: 45.7.0 / 51.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5396

A use-after-free vulnerability in the Media Decoder when working with media files when some events are fired after the media elements are freed from …

Fix: 45.7.0 / 51.0+
Fix from $2,300 2018-06-11
Firefox HIGH 8.1
CVE-2016-9896

Use-after-free while manipulating the "navigator" object within WebVR. Note: WebVR is not currently enabled by default. This vulnerability affects Fi…

Fix: 50.1.0+
Fix from $1,950 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2016-9898

Use-after-free resulting in potentially exploitable crash when manipulating DOM subtrees in the Editor. This vulnerability affects Firefox < 50.1, Fi…

Fix: 45.6.0 / 50.1.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2016-9899EPSS 21%

Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects F…

Fix: 45.9.0 / 52.1.0+
Fix from $2,300 2018-06-11
Debian Linux CRITICAL 9.8
CVE-2017-5376

Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

Fix: 45.7.0 / 51.0+
Fix from $2,300 2018-06-11
Firefox HIGH 7.5
CVE-2017-5379

Use-after-free vulnerability in Web Animations when interacting with cycle collection found through fuzzing. This vulnerability affects Firefox < 51.

Fix: 51.0+
Fix from $1,950 2018-06-11
Firefox MEDIUM 6.5
CVE-2016-9067

Two use-after-free errors during DOM operations resulting in potentially exploitable crashes. This vulnerability affects Firefox < 50.

Fix: 50.0+
Fix from $1,600 2018-06-11
Firefox HIGH 7.5
CVE-2016-9068

A use-after-free during web animations when working with timelines resulting in a potentially exploitable crash. This vulnerability affects Firefox <…

Fix: 50.0+
Fix from $1,950 2018-06-11
Debian Linux HIGH 7.5
CVE-2016-9079 KEVEPSS 87%

A use-after-free vulnerability in SVG Animation has been discovered. An exploit built on this vulnerability has been discovered in the wild targeting…

Fix: 45.5.1 / 50.0.2+
Fix from $1,950 2018-06-11
Firefox CRITICAL 9.8
CVE-2016-5287

A potentially exploitable use-after-free crash during actor destruction with service workers. This issue does not affect releases earlier than Firefo…

Fix: 49.0.2+
Fix from $2,300 2018-06-11
Safari HIGH 8.8
CVE-2018-4218EPSS 9%

An issue was discovered in certain Apple products. iOS before 11.4 is affected. Safari before 11.1.1 is affected. iCloud before 7.5 on Windows is aff…

Fix: 4.3.1 / 7.5+
Fix from $1,950 2018-06-08