Search CVE reports


Toggle filters

351 – 358 of 358 results


CVE-2010-0220

Low priority

Some fixes available 3 of 6

The nsObserverList::FillObserverArray function in xpcom/ds/nsObserverList.cpp in Mozilla Firefox before 3.5.7 allows remote attackers to cause a denial of service (application crash) via a crafted web site that triggers memory...

4 affected packages

firefox, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
xulrunner-1.9
xulrunner-1.9.1
xulrunner-1.9.2
Show less packages

CVE-2009-3378

Medium priority

Some fixes available 3 of 6

The oggplay_data_handle_theora_frame function in media/liboggplay/src/liboggplay/oggplay_data.c in liboggplay, as used in Mozilla Firefox 3.5.x before 3.5.4, attempts to reuse an earlier frame data structure upon encountering a...

3 affected packages

firefox, xulrunner-1.9.1, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
xulrunner-1.9.1
xulrunner-1.9.2
Show less packages

CVE-2009-3014

Low priority
Ignored

Mozilla Firefox 3.0.13 and earlier, 3.5, 3.6 a1 pre, and 3.7 a1 pre; SeaMonkey 1.1.17; and Mozilla 1.7.x and earlier do not properly handle javascript: URIs in HTML links within 302 error documents sent from web servers, which...

5 affected packages

firefox, seamonkey, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
seamonkey
xulrunner-1.9
xulrunner-1.9.1
xulrunner-1.9.2
Show less packages

CVE-2009-1828

Negligible priority
Ignored

Mozilla Firefox 3.0.10 allows remote attackers to cause a denial of service (infinite loop, application hang, and memory consumption) via a KEYGEN element in conjunction with (1) a META element specifying automatic page refresh or...

4 affected packages

firefox, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
xulrunner-1.9
xulrunner-1.9.1
xulrunner-1.9.2
Show less packages

CVE-2009-1827

Low priority

Some fixes available 4 of 11

The SVG component in Mozilla Firefox 3.0.4 allows remote attackers to cause a denial of service (application hang) via a large value in the r (aka Radius) attribute of a circle element, related to an "unclamped loop."

4 affected packages

firefox, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
xulrunner-1.9
xulrunner-1.9.1
xulrunner-1.9.2
Show less packages

CVE-2009-1232

Low priority
Ignored

Mozilla Firefox 3.0.8 and earlier 3.0.x versions allows remote attackers to cause a denial of service (memory corruption) via an XML document composed of a long series of start-tags with no corresponding end-tags. NOTE: it...

5 affected packages

firefox, xulrunner, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
xulrunner
xulrunner-1.9
xulrunner-1.9.1
xulrunner-1.9.2
Show less packages

CVE-2008-5913

Low priority

Some fixes available 5 of 12

The Math.random function in the JavaScript implementation in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and SeaMonkey before 2.0.5, uses a random number generator that is seeded only once per browser session,...

4 affected packages

xulrunner-1.9.2, firefox, xulrunner-1.9, xulrunner-1.9.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
xulrunner-1.9.2
firefox
xulrunner-1.9
xulrunner-1.9.1
Show less packages

CVE-2007-1970

Negligible priority
Ignored

Mozilla Firefox does not warn the user about HTTP elements on an HTTPS page when the HTTP elements are dynamically created by a delayed document.write, which allows remote attackers to supply unauthenticated content and...

5 affected packages

firefox, xulrunner, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
xulrunner
xulrunner-1.9
xulrunner-1.9.1
xulrunner-1.9.2
Show less packages