Search CVE reports
351 – 358 of 358 results
Some fixes available 3 of 6
The nsObserverList::FillObserverArray function in xpcom/ds/nsObserverList.cpp in Mozilla Firefox before 3.5.7 allows remote attackers to cause a denial of service (application crash) via a crafted web site that triggers memory...
4 affected packages
firefox, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
xulrunner-1.9 | — | — | — | — |
xulrunner-1.9.1 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 3 of 6
The oggplay_data_handle_theora_frame function in media/liboggplay/src/liboggplay/oggplay_data.c in liboggplay, as used in Mozilla Firefox 3.5.x before 3.5.4, attempts to reuse an earlier frame data structure upon encountering a...
3 affected packages
firefox, xulrunner-1.9.1, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
xulrunner-1.9.1 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Mozilla Firefox 3.0.13 and earlier, 3.5, 3.6 a1 pre, and 3.7 a1 pre; SeaMonkey 1.1.17; and Mozilla 1.7.x and earlier do not properly handle javascript: URIs in HTML links within 302 error documents sent from web servers, which...
5 affected packages
firefox, seamonkey, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
seamonkey | — | — | — | — |
xulrunner-1.9 | — | — | — | — |
xulrunner-1.9.1 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Mozilla Firefox 3.0.10 allows remote attackers to cause a denial of service (infinite loop, application hang, and memory consumption) via a KEYGEN element in conjunction with (1) a META element specifying automatic page refresh or...
4 affected packages
firefox, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
xulrunner-1.9 | — | — | — | — |
xulrunner-1.9.1 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 4 of 11
The SVG component in Mozilla Firefox 3.0.4 allows remote attackers to cause a denial of service (application hang) via a large value in the r (aka Radius) attribute of a circle element, related to an "unclamped loop."
4 affected packages
firefox, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
xulrunner-1.9 | — | — | — | — |
xulrunner-1.9.1 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Mozilla Firefox 3.0.8 and earlier 3.0.x versions allows remote attackers to cause a denial of service (memory corruption) via an XML document composed of a long series of start-tags with no corresponding end-tags. NOTE: it...
5 affected packages
firefox, xulrunner, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
xulrunner | — | — | — | — |
xulrunner-1.9 | — | — | — | — |
xulrunner-1.9.1 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |
Some fixes available 5 of 12
The Math.random function in the JavaScript implementation in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and SeaMonkey before 2.0.5, uses a random number generator that is seeded only once per browser session,...
4 affected packages
xulrunner-1.9.2, firefox, xulrunner-1.9, xulrunner-1.9.1
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
xulrunner-1.9.2 | — | — | — | — |
firefox | — | — | — | — |
xulrunner-1.9 | — | — | — | — |
xulrunner-1.9.1 | — | — | — | — |
Mozilla Firefox does not warn the user about HTTP elements on an HTTPS page when the HTTP elements are dynamically created by a delayed document.write, which allows remote attackers to supply unauthenticated content and...
5 affected packages
firefox, xulrunner, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2
Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
---|---|---|---|---|
firefox | — | — | — | — |
xulrunner | — | — | — | — |
xulrunner-1.9 | — | — | — | — |
xulrunner-1.9.1 | — | — | — | — |
xulrunner-1.9.2 | — | — | — | — |