Vulnerability index

Browse CVEs

3,919 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

HIGH 8.1 CVE-2017-7807 A mechanism that uses AppCache to hijack a URL in a domain using fallback by serving the files from a sub-path on the domain. This has been addressed… Debian Linux 52.3.0 / 55.0+ Fix from $1,9502018-06-11 CRITICAL 9.8 CVE-2017-7784 A use-after-free vulnerability can occur when reading an image observer during frame reconstruction after the observer has been freed. This results i… Debian Linux 55.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7785 A buffer overflow can occur when manipulating Accessible Rich Internet Applications (ARIA) attributes within the DOM. This results in a potentially e… Debian Linux 52.3.0 / 55.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7786 A buffer overflow can occur when the image renderer attempts to paint non-displayable SVG elements. This results in a potentially exploitable crash. … Debian Linux 52.1.0 / 55.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7792 A buffer overflow will occur when viewing a certificate in the certificate manager if the certificate has an extremely long object identifier (OID). … Debian Linux 52.3.0 / 55.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7793 A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potent… Debian Linux 52.4.0 / 56.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7800 A use-after-free vulnerability can occur in WebSockets when the object holding the connection is freed before the disconnection operation is finished… Debian Linux 52.3.0 / 55.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7801 A use-after-free vulnerability can occur while re-computing layout for a "marquee" element during window resizing where the updated style object is f… Debian Linux 52.3.0 / 55.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7802 A use-after-free vulnerability can occur when manipulating the DOM during the resize event of an image element. If these elements have been freed due… Debian Linux 52.3.0 / 55.0+ Fix from $2,3002018-06-11 HIGH 8.8 CVE-2017-7798 The Developer Tools feature suffers from a XUL injection vulnerability due to improper sanitization of the web page source code. In the worst case, t… Debian Linux 52.3.0 / 55.0+ Fix from $1,9502018-06-11 HIGH 7.5 CVE-2017-7787 Same-origin policy protections can be bypassed on pages with embedded iframes during page reloads, allowing the iframes to access content on the top … Debian Linux 55.0+ Fix from $1,9502018-06-11 MEDIUM 5.3 CVE-2017-7791 On pages containing an iframe, the "data:" protocol can be used to create a modal alert that will render over arbitrary domains following page naviga… Debian Linux 52.3.0 / 55.0+ Fix from $1,6002018-06-11 CRITICAL 9.8 CVE-2017-7779 Memory safety bugs were reported in Firefox 54, Firefox ESR 52.2, and Thunderbird 52.2. Some of these bugs showed evidence of memory corruption and w… Debian Linux 52.3.0 / 55.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5460 A use-after-free vulnerability in frame selection triggered by a combination of malicious script content and key presses by a user. This results in a… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5464 During DOM manipulations of the accessibility tree through script, the DOM tree can become out of sync with the accessibility tree, leading to memory… Debian Linux 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5469 Fixed potential buffer overflows in generated Firefox code due to CVE-2016-6354 issue in Flex. This vulnerability affects Thunderbird < 52.1, Firefox… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5470 Memory safety bugs were reported in Firefox 53 and Firefox ESR 52.1. Some of these bugs showed evidence of memory corruption and we presume that with… Debian Linux 52.2.0 / 54.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5472 A use-after-free vulnerability with the frameloader during tree reconstruction while regenerating CSS layout when attempting to use a node in the tre… Debian Linux 52.2.0 / 54.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7749 A use-after-free vulnerability when using an incorrect URL during the reloading of a docshell. This results in a potentially exploitable crash. This … Debian Linux 52.2.0 / 54.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7750 A use-after-free vulnerability during video control operations when a "<track>" element holds a reference to an older window if that window has been … Debian Linux 52.2.0 / 54.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-7751 A use-after-free vulnerability with content viewer listeners that results in a potentially exploitable crash. This vulnerability affects Firefox < 54… Debian Linux 52.2.0 / 54.0+ Fix from $2,3002018-06-11 CRITICAL 9.1 CVE-2017-5465EPSS 19% An out-of-bounds read while processing SVG content in "ConvolvePixel". This results in a crash and also allows for otherwise inaccessible memory bein… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.1 CVE-2017-7753 An out-of-bounds read occurs when applying style rules to pseudo-elements, such as ::first-line, using cached style data. This vulnerability affects … Debian Linux 52.3.0 / 55.0+ Fix from $2,3002018-06-11 HIGH 8.8 CVE-2017-7752 A use-after-free vulnerability during specific user interactions with the input method editor (IME) in some languages due to how events are handled. … Debian Linux 52.2.0 / 54.0+ Fix from $1,9502018-06-11 HIGH 7.5 CVE-2017-7754 An out-of-bounds read in WebGL with a maliciously crafted "ImageInfo" object during WebGL operations. This vulnerability affects Firefox < 54, Firefo… Debian Linux 52.2.0 / 54.0+ Fix from $1,9502018-06-11 MEDIUM 5.3 CVE-2017-5462 A flaw in DRBG number generation within the Network Security Services (NSS) library where the internal state V does not correctly carry bits over. Th… Debian Linux 3.28.4 / 45.9.0+ Fix from $1,6002018-06-11 CRITICAL 9.8 CVE-2017-5441 A use-after-free vulnerability when holding a selection during scroll events. This results in a potentially exploitable crash. This vulnerability aff… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5442 A use-after-free vulnerability during changes in style when manipulating DOM elements. This results in a potentially exploitable crash. This vulnerab… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5443 An out-of-bounds write vulnerability while decoding improperly formed BinHex format archives. This vulnerability affects Thunderbird < 52.1, Firefox … Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11 CRITICAL 9.8 CVE-2017-5446 An out-of-bounds read when an HTTP/2 connection to a servers sends "DATA" frames with incorrect data content. This leads to a potentially exploitable… Debian Linux 45.9.0 / 53.0+ Fix from $2,3002018-06-11