Vulnerability index

Browse CVEs

2,895 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Firefox HIGH 9.3
CVE-2012-4186EPSS 15%

Heap-based buffer overflow in the nsWaveReader::DecodeAudioData function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird …

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-4187EPSS 7%

Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 d…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-4188EPSS 15%

Heap-based buffer overflow in the Convolve3x3 function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thund…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox MEDIUM 6.8
CVE-2012-5354

Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has multi…

Fix: 2.13 / 16.0+
Fix from $1,600 2012-10-10
Firefox HIGH 10.0
CVE-2012-3983EPSS 5%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 allow r…

Fix: 2.13 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-3982

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, T…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-3988EPSS 5%

Use-after-free vulnerability in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-3989

Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly perform a cast of an unspecified variable during use …

Fix: 2.13 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-3990EPSS 5%

Use-after-free vulnerability in the IME State Manager implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird befo…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox HIGH 9.3
CVE-2012-3991

Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 d…

Fix: 10.0.8 / 16.0+
Fix from $1,950 2012-10-10
Firefox MEDIUM 6.8
CVE-2012-3984

Mozilla Firefox before 16.0, Thunderbird before 16.0, and SeaMonkey before 2.13 do not properly handle navigation away from a web page that has a SEL…

Fix: 2.13 / 16.0+
Fix from $1,600 2012-10-10
Bugzilla MEDIUM 5.0
CVE-2012-3981

Auth/Verify/LDAP.pm in Bugzilla 2.x and 3.x before 3.6.11, 3.7.x and 4.0.x before 4.0.8, 4.1.x and 4.2.x before 4.2.3, and 4.3.x before 4.3.3 does no…

Patch available
Fix from $1,600 2012-09-04
Bugzilla MEDIUM 5.0
CVE-2012-4747

Bugzilla 2.x and 3.x through 3.6.11, 3.7.x and 4.0.x before 4.0.8, 4.1.x and 4.2.x before 4.2.3, and 4.3.x before 4.3.3 stores potentially sensitive …

Patch available
Fix from $1,600 2012-09-04
Firefox HIGH 9.3
CVE-2012-3980

The web console in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, and Thunderbird ESR 10.x before 10.0.7 allow…

Fix: after 14.0
Fix from $1,950 2012-08-29
Firefox HIGH 7.6
CVE-2012-3973

The debugger in the developer-tools subsystem in Mozilla Firefox before 15.0, when remote debugging is disabled, does not properly restrict access to…

Fix: after 14.0
Fix from $1,950 2012-08-29
Firefox MEDIUM 6.9
CVE-2012-3974

Untrusted search path vulnerability in the installer in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, and Thu…

Fix: after 14.0
Fix from $1,600 2012-08-29
Firefox MEDIUM 6.8
CVE-2012-3978

The nsLocation::CheckURL function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, Thunderbird ESR 10.x befor…

Fix: after 14.0
Fix from $1,600 2012-08-29
Firefox MEDIUM 6.8
CVE-2012-3979

Mozilla Firefox before 15.0 on Android does not properly implement unspecified callers of the __android_log_print function, which allows remote attac…

Fix: after 14.0
Fix from $1,600 2012-08-29
Firefox MEDIUM 5.0
CVE-2012-3972

The format-number functionality in the XSLT implementation in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0, T…

Fix: 10.0.7 / 15.0+
Fix from $1,600 2012-08-29
Firefox HIGH 10.0
CVE-2012-1974EPSS 6%

Use-after-free vulnerability in the gfxTextRun::CanBreakLineBefore function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbi…

Fix: 10.0.7 / 15.0+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-1975EPSS 6%

Use-after-free vulnerability in the PresShell::CompleteMove function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird befo…

Fix: 10.0.7 / 15.0+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-1976EPSS 6%

Use-after-free vulnerability in the nsHTMLSelectElement::SubmitNamesValues function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, T…

Fix: 2.12 / 10.0.7+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3956EPSS 5%

Use-after-free vulnerability in the MediaStreamGraphThreadRunnable::Run function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thun…

Fix: 2.12 / 10.0.7+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3957EPSS 8%

Heap-based buffer overflow in the nsBlockFrame::MarkLineDirty function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird be…

Fix: 2.12 / 10.0.7+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3958EPSS 5%

Use-after-free vulnerability in the nsHTMLEditRules::DeleteNonTableElements function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, …

Fix: after 14.0
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3959

Use-after-free vulnerability in the nsRangeUpdater::SelAdjDeleteNode function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunder…

Fix: 10.0.7 / 15.0+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3960EPSS 5%

Use-after-free vulnerability in the mozSpellChecker::SetCurrentDictionary function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Th…

Fix: 2.12 / 10.0.7+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3961EPSS 7%

Use-after-free vulnerability in the RangeData implementation in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird before 15.0,…

Fix: 2.12 / 10.0.7+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3963EPSS 6%

Use-after-free vulnerability in the js::gc::MapAllocToTraceKind function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird …

Fix: 2.12 / 10.0.7+
Fix from $1,950 2012-08-29
Firefox HIGH 10.0
CVE-2012-3964EPSS 5%

Use-after-free vulnerability in the gfxTextRun::GetUserData function in Mozilla Firefox before 15.0, Firefox ESR 10.x before 10.0.7, Thunderbird befo…

Fix: after 14.0
Fix from $1,950 2012-08-29