Vulnerability index

Browse CVEs

230 matching
Filters 2 Clear all
Severity

Filters apply as you choose them.

Filtering by weakness Out-of-bounds WriteCWE-787 × clear
Firefox HIGH 8.8
CVE-2020-6800

Mozilla developers and community members reported memory safety bugs present in Firefox 72 and Firefox ESR 68.4. Some of these bugs showed evidence o…

Fix: 68.5.0 / 73.0+
Fix from $1,950 2020-03-02
Firefox HIGH 8.8
CVE-2020-6801

Mozilla developers reported memory safety bugs present in Firefox 72. Some of these bugs showed evidence of memory corruption and we presume that wit…

Fix: 73.0+
Fix from $1,950 2020-03-02
Firefox HIGH 8.8
CVE-2019-17012

Mozilla developers reported memory safety bugs present in Firefox 70 and Firefox ESR 68.2. Some of these bugs showed evidence of memory corruption an…

Fix: 68.3 / 71.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-17013

Mozilla developers reported memory safety bugs present in Firefox 70. Some of these bugs showed evidence of memory corruption and we presume that wit…

Fix: 71.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-17015

During the initialization of a new content process, a pointer offset can be manipulated leading to memory corruption and a potentially exploitable cr…

Fix: 68.4 / 72.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-17024

Mozilla developers reported memory safety bugs present in Firefox 71 and Firefox ESR 68.3. Some of these bugs showed evidence of memory corruption an…

Fix: 68.4 / 72.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-17025

Mozilla developers reported memory safety bugs present in Firefox 71. Some of these bugs showed evidence of memory corruption and we presume that wit…

Fix: 72.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-17005

The plain text serializer used a fixed-size array for the number of <ol> elements it could process; however it was possible to overflow the static-si…

Fix: 68.3 / 71.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-11764

Mozilla developers and community members reported memory safety bugs present in Firefox 69 and Firefox ESR 68.1. Some of these bugs showed evidence o…

Fix: 68.2 / 70.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-11745

When encrypting with a block cipher, if a call to NSC_EncryptUpdate was made with data smaller than the block size, a small out of bounds write could…

Fix: 2.14.0 / 68.3+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-11758

Mozilla community member Philipp reported a memory safety bug present in Firefox 68 when 360 Total Security was installed. This bug showed evidence o…

Fix: 68.2 / 69.0+
Fix from $1,950 2020-01-08
Firefox HIGH 8.8
CVE-2019-11760

A fixed-size stack buffer could overflow in nrappkit when doing WebRTC signaling. This resulted in a potentially exploitable crash in some instances.…

Fix: 68.2 / 70.0+
Fix from $1,950 2020-01-08
Firefox CRITICAL 9.8
CVE-2019-11734

Mozilla developers and community members reported memory safety bugs present in Firefox 68. Some of these bugs showed evidence of memory corruption a…

Fix: 69.0+
Fix from $2,300 2019-09-27
Firefox HIGH 8.8
CVE-2019-11735

Mozilla developers and community members reported memory safety bugs present in Firefox 68 and Firefox ESR 68. Some of these bugs showed evidence of …

Fix: 68.1.0 / 69.0+
Fix from $1,950 2019-09-27
Firefox HIGH 8.8
CVE-2019-11740

Mozilla developers and community members reported memory safety bugs present in Firefox 68, Firefox ESR 68, and Firefox 60.8. Some of these bugs show…

Fix: 60.9.0 / 68.1.0+
Fix from $1,950 2019-09-27
Firefox CRITICAL 9.8
CVE-2019-9800

Mozilla developers and community members reported memory safety bugs present in Firefox 66, Firefox ESR 60.6, and Thunderbird 60.6. Some of these bug…

Fix: 60.7 / 67.0+
Fix from $2,300 2019-07-23
Firefox CRITICAL 9.8
CVE-2019-9814

Mozilla developers and community members reported memory safety bugs present in Firefox 66. Some of these bugs showed evidence of memory corruption a…

Fix: 67.0+
Fix from $2,300 2019-07-23
Thunderbird CRITICAL 9.8
CVE-2019-11704EPSS 11%

A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in icalmemory_strdup_and_dequote when processing certain email messages,…

Fix: 60.7.1+
Fix from $2,300 2019-07-23
Thunderbird CRITICAL 9.8
CVE-2019-11705EPSS 10%

A flaw in Thunderbird's implementation of iCal causes a stack buffer overflow in icalrecur_add_bydayrules when processing certain email messages, res…

Fix: 60.7.1+
Fix from $2,300 2019-07-23
Firefox CRITICAL 9.8
CVE-2019-11709

Mozilla developers and community members reported memory safety bugs present in Firefox 67 and Firefox ESR 60.7. Some of these bugs showed evidence o…

Fix: 60.8.0 / 68.0+
Fix from $2,300 2019-07-23
Firefox CRITICAL 9.8
CVE-2019-11710

Mozilla developers and community members reported memory safety bugs present in Firefox 67. Some of these bugs showed evidence of memory corruption a…

Fix: 68.0+
Fix from $2,300 2019-07-23
Firefox CRITICAL 9.8
CVE-2019-11693

The bufferdata function in WebGL is vulnerable to a buffer overflow with specific graphics drivers on Linux. This could result in malicious content f…

Fix: 60.7.0 / 67.0+
Fix from $2,300 2019-07-23
Thunderbird CRITICAL 9.8
CVE-2019-11703EPSS 11%

A flaw in Thunderbird's implementation of iCal causes a heap buffer overflow in parser_get_next_char when processing certain email messages, resultin…

Fix: 60.7.1+
Fix from $2,300 2019-07-23
Firefox CRITICAL 9.8
CVE-2019-9788

Mozilla developers and community members reported memory safety bugs present in Firefox 65, Firefox ESR 60.5, and Thunderbird 60.5. Some of these bug…

Fix: 60.6.0 / 66.0+
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.8
CVE-2019-9789

Mozilla developers and community members reported memory safety bugs present in Firefox 65. Some of these bugs showed evidence of memory corruption a…

Fix: 66.0+
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.8
CVE-2019-9792EPSS 13%

The IonMonkey just-in-time (JIT) compiler can leak an internal JS_OPTIMIZED_OUT magic value to the running script during a bailout. This magic value …

Fix: 60.6.0 / 66.0+
Fix from $2,300 2019-04-26
Firefox CRITICAL 9.8
CVE-2018-18498

A potential vulnerability leading to an integer overflow can occur during buffer size calculations for images when a raw value is used instead of the…

Fix: 60.4 / 64.0+
Fix from $2,300 2019-02-28
Firefox HIGH 7.5
CVE-2018-12393

A potential vulnerability was found in 32-bit builds where an integer overflow during the conversion of scripts to an internal UTF-16 representation …

Fix: 60.3 / 63.0+
Fix from $1,950 2019-02-28
Firefox CRITICAL 9.8
CVE-2018-5122

A potential integer overflow in the "DoCrypt" function of WebCrypto was identified. If a means was found of exploiting it, it could result in an out-…

Fix: after 57.0.4
Fix from $2,300 2018-06-11
Firefox CRITICAL 9.8
CVE-2017-7778EPSS 5%

A number of security vulnerabilities in the Graphite 2 library including out-of-bounds reads, buffer overflow reads and writes, and the use of uninit…

Fix: 1.3.10 / 52.2.0+
Fix from $2,300 2018-06-11