Vulnerability index

Browse CVEs

364 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Memory Buffer Bounds ErrorCWE-119 × clear
Firefox HIGH 9.3
CVE-2010-3777EPSS 8%

Unspecified vulnerability in Mozilla Firefox 3.6.x before 3.6.13 and Thunderbird 3.1.x before 3.1.7 allows remote attackers to cause a denial of serv…

Mitigation only
Fix from $1,950 2010-12-10
Firefox HIGH 9.3
CVE-2010-3778EPSS 8%

Unspecified vulnerability in Mozilla Firefox 3.5.x before 3.5.16, Thunderbird before 3.0.11, and SeaMonkey before 2.0.11 allows remote attackers to c…

Fix: after 3.0.10
Fix from $1,950 2010-12-10
Firefox CRITICAL 9.8
CVE-2010-3765 KEVEPSS 83%

Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMonkey 2.x before 2.0.1…

Mitigation only
Fix from $2,300 2010-10-28
Firefox HIGH 9.3
CVE-2010-3179EPSS 10%

Stack-based buffer overflow in the text-rendering functionality in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 an…

Fix: after 3.5.13
Fix from $1,950 2010-10-21
Firefox HIGH 9.3
CVE-2010-3183EPSS 6%

The LookupGetterOrSetter function in js3250.dll in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3…

Fix: after 3.5.13
Fix from $1,950 2010-10-21
Firefox HIGH 9.3
CVE-2010-2770

Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 on Mac OS X allow r…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-3166EPSS 6%

Heap-based buffer overflow in the nsTextFrameUtils::TransformText function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird befor…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-3167EPSS 7%

The nsTreeContentView function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonke…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-3168

Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 do not properly res…

Fix: after 3.5.11
Fix from $1,950 2010-09-09
Firefox HIGH 9.3
CVE-2010-1212

js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 allows remote attackers to cause a…

Mitigation only
Fix from $1,950 2010-07-30
Firefox HIGH 10.0
CVE-2010-1122

Unspecified vulnerability in Mozilla Firefox 3.5.x through 3.5.8 allows remote attackers to cause a denial of service (memory corruption and applicat…

Mitigation only
Fix from $1,950 2010-03-25
Firefox HIGH 9.3
CVE-2010-0165

The TraceRecorder::traverseScopeChain function in js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 allows remote attacke…

Mitigation only
Fix from $1,950 2010-03-25
Firefox HIGH 9.3
CVE-2010-0167EPSS 11%

The browser engine in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before…

Fix: after 3.0.1
Fix from $1,950 2010-03-25
Firefox MEDIUM 5.1
CVE-2010-0166EPSS 7%

The gfxTextRun::SanitizeGlyphRuns function in gfx/thebes/src/gfxFont.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 on Mac OS X, when …

Mitigation only
Fix from $1,600 2010-03-25
Firefox HIGH 10.0
CVE-2009-3373EPSS 16%

Heap-based buffer overflow in the GIF image parser in Mozilla Firefox before 3.0.15 and 3.5.x before 3.5.4, and SeaMonkey before 2.0, allows remote a…

Fix: after 1.5.0.10
Fix from $1,950 2009-10-29
Firefox HIGH 10.0
CVE-2009-2662

The browser engine in Mozilla Firefox 3.5.x before 3.5.2 allows remote attackers to cause a denial of service (memory corruption and application cras…

Fix: after 3.0.12
Fix from $1,950 2009-08-04
Network Security Services HIGH 9.3
CVE-2009-2404

Heap-based buffer overflow in a regular-expression parser in Mozilla Network Security Services (NSS) before 3.12.3, as used in Firefox, Thunderbird, …

Patch available
Fix from $1,950 2009-08-03
Firefox HIGH 7.8
CVE-2009-2479EPSS 12%

Mozilla Firefox 3.0.x, 3.5, and 3.5.1 on Windows allows remote attackers to cause a denial of service (uncaught exception and application crash) via …

No fix yet
Fix from $1,950 2009-07-16
Firefox MEDIUM 6.8
CVE-2009-0689EPSS 28%

Array index error in the (1) dtoa implementation in dtoa.c (aka pdtoa.c) and the (2) gdtoa (aka new dtoa) implementation in gdtoa/misc.c in libc, as …

Patch available
Fix from $1,600 2009-07-01
Firefox HIGH 9.3
CVE-2008-0017EPSS 8%

The http-index-format MIME type parser (nsDirIndexParser) in Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 d…

Fix: 1.1.13 / 2.0.0.18+
Fix from $1,950 2008-11-13
Seamonkey HIGH 10.0
CVE-2008-4070EPSS 7%

Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.17 and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (a…

Fix: after 2.0.0.16
Fix from $1,950 2008-09-27
Firefox HIGH 10.0
CVE-2008-0016EPSS 44%

Stack-based buffer overflow in the URL parsing implementation in Mozilla Firefox before 2.0.0.17 and SeaMonkey before 1.1.12 allows remote attackers …

Fix: after 2.0.0.16
Fix from $1,950 2008-09-24
Firefox HIGH 10.0
CVE-2008-2786

Buffer overflow in Firefox 3.0 and 2.0.x has unknown impact and attack vectors. NOTE: due to lack of details as of 20080619, it is not clear whether…

No fix yet
Fix from $1,950 2008-06-19
Seamonkey HIGH 7.5
CVE-2008-0304EPSS 6%

Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.12 and SeaMonkey before 1.1.8 might allow remote attackers to execute arbitrary code v…

Fix: after 2.0.0.9
Fix from $1,950 2008-02-29
Firefox HIGH 9.3
CVE-2007-2867

Multiple vulnerabilities in the layout engine for Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, Thunderbird 1.5.x before 1.5.0.12 and…

Patch available
Fix from $1,950 2007-06-01
Firefox MEDIUM 6.8
CVE-2007-1256

Mozilla Firefox 2.0.0.2 allows remote attackers to spoof the address bar, favicons, and document source, and perform updates in the context of arbitr…

Mitigation only
Fix from $1,600 2007-03-03
Firefox MEDIUM 6.8
CVE-2007-0009EPSS 50%

Stack-based buffer overflow in the SSLv2 support in Mozilla Network Security Services (NSS) before 3.11.5, as used by Firefox before 1.5.0.10 and 2.x…

Fix: 1.0.8 / 1.5.0.10+
Fix from $1,600 2007-02-26
Firefox HIGH 9.3
CVE-2007-0776EPSS 7%

Heap-based buffer overflow in the _cairo_pen_init function in Mozilla Firefox 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1…

Fix: after 2.0.0.1
Fix from $1,950 2007-02-26
Firefox HIGH 9.3
CVE-2007-0777EPSS 8%

The JavaScript engine in Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, Thunderbird before 1.5.0.10, and SeaMonkey before 1.0.8 allows remot…

Fix: 1.0.8 / 1.5.0.10+
Fix from $1,950 2007-02-26
Firefox MEDIUM 6.8
CVE-2006-6500EPSS 8%

Heap-based buffer overflow in Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows…

Fix: 1.0.7 / 1.5.0.9+
Fix from $1,600 2006-12-20