Vulnerability index

Browse CVEs

364 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Firefox Mobile HIGH 9.3
CVE-2012-1139

Array index error in FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a de…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1140

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1141

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1142

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1144

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox HIGH 10.0
CVE-2012-0468

The browser engine in Mozilla Firefox 4.x through 11.0, Thunderbird 5.0 through 11.0, and SeaMonkey before 2.9 allows remote attackers to cause a den…

Fix: after 2.9
Fix from $1,950 2012-04-25
Firefox HIGH 10.0
CVE-2012-0470EPSS 10%

Heap-based buffer overflow in the nsSVGFEDiffuseLightingElement::LightPixel function in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.…

Fix: after 2.9
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 10.0
CVE-2012-1126EPSS 6%

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox HIGH 9.3
CVE-2012-0472

The cairo-dwrite implementation in Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, Thunderbird 5.0 through 11.0, Thunderbird ESR 10…

Fix: after 2.9
Fix from $1,950 2012-04-25
Firefox Mobile HIGH 9.3
CVE-2012-1127

FreeType before 2.4.9, as used in Mozilla Firefox Mobile before 10.0.4 and other products, allows remote attackers to cause a denial of service (inva…

Fix: after 10.0.3
Fix from $1,950 2012-04-25
Firefox HIGH 10.0
CVE-2012-0444EPSS 8%

Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 do not properly initialize…

Fix: 2.7 / 3.1.18+
Fix from $1,950 2012-02-01
Firefox HIGH 9.3
CVE-2012-0449EPSS 6%

Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 allow remote attackers to …

Fix: 2.7 / 3.1.18+
Fix from $1,950 2012-02-01
Firefox HIGH 10.0
CVE-2011-3652

The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly allocate memory, which allows remote attackers to cause…

Fix: after 7.0.1
Fix from $1,950 2011-11-09
Firefox HIGH 10.0
CVE-2011-3654

The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly handle links from SVG mpath elements to non-SVG element…

Fix: after 7.0.1
Fix from $1,950 2011-11-09
Firefox HIGH 9.3
CVE-2011-3650

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before 3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that conta…

Fix: after 3.6.23
Fix from $1,950 2011-11-09
Firefox HIGH 10.0
CVE-2011-3003

Mozilla Firefox before 7.0 and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (application crash) or possibly execute arbit…

Fix: 2.4 / 7.0+
Fix from $1,950 2011-09-29
Firefox HIGH 9.3
CVE-2011-3002

Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla Firefox before 7.0 and SeaMonkey before 2.4, does not validate the return value of a …

Fix: 2.4 / 7.0+
Fix from $1,950 2011-09-29
Firefox HIGH 9.3
CVE-2011-3005

Use-after-free vulnerability in Mozilla Firefox 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allows remote attackers to cause a de…

Fix: after 6.0.2
Fix from $1,950 2011-09-29
Firefox HIGH 10.0
CVE-2011-2987EPSS 5%

Heap-based buffer overflow in Almost Native Graphics Layer Engine (ANGLE), as used in the WebGL implementation in Mozilla Firefox 4.x through 5, Thun…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2988EPSS 5%

Buffer overflow in an unspecified string class in the WebGL shader implementation in Mozilla Firefox 4.x through 5, Thunderbird before 6, SeaMonkey 2…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2989

The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly im…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2991

The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products does not properly im…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox HIGH 10.0
CVE-2011-2992

The Ogg reader in the browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x before 2.3, Thunderbird before 6, and possibly other products al…

Fix: after 5.0
Fix from $1,950 2011-08-18
Firefox MEDIUM 5.0
CVE-2011-2377

Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allow remote attackers to cause a denial…

Fix: after 3.6.17
Fix from $1,600 2011-06-30
Firefox HIGH 10.0
CVE-2011-0054

Buffer overflow in the JavaScript engine in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, might allow remote at…

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0056

Buffer overflow in the JavaScript engine in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, might allow remote at…

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 10.0
CVE-2011-0058EPSS 5%

Buffer overflow in Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before 2.0.12, on Windows allows remote attackers to execute …

Fix: after 2.0.11
Fix from $1,950 2011-03-02
Firefox HIGH 9.3
CVE-2011-0061

Buffer overflow in Mozilla Firefox 3.6.x before 3.6.14, Thunderbird before 3.1.8, and SeaMonkey before 2.0.12 might allow remote attackers to execute…

Fix: after 3.1.7
Fix from $1,950 2011-03-02
Firefox HIGH 9.3
CVE-2010-3769

The line-breaking implementation in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.1.x before 3.1.7, and SeaM…

Fix: after 3.5.15
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3776EPSS 9%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird before 3.0.11 and 3.…

Fix: after 3.5.15
Fix from $1,950 2010-12-10