Vulnerability index

Browse CVEs

363 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Firefox HIGH 9.3
CVE-2012-4204EPSS 6%

The str_unescape function in the JavaScript engine in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote a…

Fix: 2.14 / 17.0+
Fix from $1,950 2012-11-21
Firefox HIGH 10.0
CVE-2012-4190

The FT2FontEntry::CreateFontEntry function in FreeType, as used in the Android build of Mozilla Firefox before 16.0.1 on CyanogenMod 10, allows remot…

Fix: after 16.0
Fix from $1,950 2012-10-12
Firefox HIGH 9.3
CVE-2012-4180EPSS 9%

Heap-based buffer overflow in the nsHTMLEditor::IsPrevCharInNodeWhitespace function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, T…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-4185EPSS 9%

Buffer overflow in the nsCharTraits::length function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunder…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-4186EPSS 15%

Heap-based buffer overflow in the nsWaveReader::DecodeAudioData function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird …

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-4187EPSS 7%

Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 d…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-4188EPSS 15%

Heap-based buffer overflow in the Convolve3x3 function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thund…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 10.0
CVE-2012-3983EPSS 5%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 allow r…

Fix: 2.13 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-3989

Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly perform a cast of an unspecified variable during use …

Fix: 2.13 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 10.0
CVE-2012-3966EPSS 5%

Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x before 10.0.7, and SeaMonkey before 2.12 a…

Fix: after 14.0
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3971EPSS 5%

Summer Institute of Linguistics (SIL) Graphite 2, as used in Mozilla Firefox before 15.0, Thunderbird before 15.0, and SeaMonkey before 2.12, allows …

Fix: after 14.0
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-1970EPSS 6%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, T…

Fix: 10.0.7 / 15.0+
Fix from $1,950 2012-08-29
Firefox HIGH 9.3
CVE-2012-1953

The ElementAnimations::EnsureStyleRuleFor function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0,…

Fix: after 2.10
Fix from $1,950 2012-07-18
Firefox HIGH 9.3
CVE-2012-1939

jsinfer.cpp in Mozilla Firefox ESR 10.x before 10.0.5 and Thunderbird ESR 10.x before 10.0.5 does not properly determine data types, which allows rem…

Mitigation only
Fix from $1,950 2012-06-05
Firefox HIGH 9.3
CVE-2012-1941

Heap-based buffer overflow in the nsHTMLReflowState::CalculateHypotheticalBox function in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 1…

Fix: after 2.9
Fix from $1,950 2012-06-05
Firefox HIGH 9.3
CVE-2012-1947

Heap-based buffer overflow in the utf16_to_isolatin1 function in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 th…

Fix: after 2.9
Fix from $1,950 2012-06-05
Firefox HIGH 9.3
CVE-2012-3105

The glBufferData function in the WebGL implementation in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12…

Fix: after 2.9
Fix from $1,950 2012-06-05
Firefox MEDIUM 5.0
CVE-2012-0441

The ASN.1 decoder in the QuickDER decoder in Mozilla Network Security Services (NSS) before 3.13.4, as used in Firefox 4.x through 12.0, Firefox ESR …

Fix: after 3.12.3
Fix from $1,600 2012-06-05
Firefox Mobile HIGH 9.3
CVE-2012-1128

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (NULL…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1129

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1130

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1131

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, on 64-bit platforms allows remote attackers to cause a den…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1132

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1133

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1134

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1135

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1136

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1137

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1138

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1139

Array index error in FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a de…

Fix: after 10.0.3
Fix from $1,950 2012-04-25