Search CVE reports
201 – 210 of 542 results
Some fixes available 6 of 20
Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to capture keystrokes entered on a web page, even when JavaScript is disabled, by using SVG animation accessKey events...
5 affected packages
firefox, seamonkey, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
Some fixes available 6 of 20
YARR, as used in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6, allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via crafted JavaScript.
5 affected packages
firefox, seamonkey, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
Some fixes available 6 of 20
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (memory corruption and...
5 affected packages
seamonkey, firefox, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
seamonkey | — | — | — | — |
firefox | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
Some fixes available 10 of 20
The SVG implementation in Mozilla Firefox 8.0, Thunderbird 8.0, and SeaMonkey 2.5 does not properly interact with DOMAttrModified event handlers, which allows remote attackers to cause a denial of service (out-of-bounds memory...
5 affected packages
firefox, seamonkey, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
The layout engine in Mozilla Firefox before 4.0, Thunderbird before 3.3, and SeaMonkey before 2.1 executes different code for visited and unvisited links during the processing of Cascading Style Sheets (CSS) token sequences, which...
5 affected packages
firefox, seamonkey, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
Mozilla Firefox before 8.0 and Thunderbird before 8.0 on Mac OS X do not properly interact with the GPU memory behavior of a certain driver for Intel integrated GPUs, which allows remote attackers to bypass the Same Origin Policy...
5 affected packages
firefox, seamonkey, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
Mozilla Firefox 7.0 and Thunderbird 7.0, when the Direct2D (aka D2D) API is used on Windows in conjunction with the Azure graphics back-end, allow remote attackers to bypass the Same Origin Policy, and obtain sensitive image data...
5 affected packages
seamonkey, firefox, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
seamonkey | — | — | — | — |
firefox | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
Some fixes available 5 of 15
Mozilla Firefox 4.x through 7.0 and Thunderbird 5.0 through 7.0 perform access control without checking for use of the NoWaiverWrapper wrapper, which allows remote attackers to gain privileges via a crafted web site.
5 affected packages
firefox, seamonkey, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
Some fixes available 6 of 20
The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly handle links from SVG mpath elements to non-SVG elements, which allows remote attackers to cause a denial of service (memory corruption...
5 affected packages
firefox, seamonkey, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |
Some fixes available 6 of 20
The browser engine in Mozilla Firefox before 8.0 and Thunderbird before 8.0 does not properly allocate memory, which allows remote attackers to cause a denial of service (memory corruption and application crash) or...
5 affected packages
firefox, seamonkey, thunderbird, xulrunner-1.9.2, xulrunner-2.0
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
thunderbird | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
xulrunner-2.0 | — | — | — | — |