|
267901
|
8.8 |
HIGH
Network
|
oracle mozilla
|
linux firefox
|
Race condition in the GetStaticInstance function in the WebRTC implementation in Mozilla Firefox before 45.0 might allow remote attackers to execute arbitrary code or cause a denial of service (use-a…
|
NVD-CWE-Other
|
CVE-2016-1973
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267902
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Race condition in libvpx in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown vec…
|
NVD-CWE-Other
|
CVE-2016-1972
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267903
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
The I420VideoFrame::CreateFrame function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows omits an unspecified status check, which might allow remote attackers to cause a denial…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1971
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267904
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Integer underflow in the srtp_unprotect function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) o…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1970
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267905
|
8.8 |
HIGH
Network
|
sil mozilla
|
graphite2 firefox
|
The setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.6.1, allows remote attackers to cause a denial of service (out-of-bounds write) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1969
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267906
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Integer underflow in Brotli, as used in Mozilla Firefox before 45.0, allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via crafted data with brotli comp…
|
CWE-189
Numeric Errors
|
CVE-2016-1968
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267907
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
Mozilla Firefox before 45.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive inform…
|
CWE-200
Information Exposure
|
CVE-2016-1967
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267908
|
8.8 |
HIGH
Network
|
oracle mozilla opensuse
|
linux firefox thunderbird opensuse
|
The nsNPObjWrapper::GetNewOrUsed function in dom/plugins/base/nsJSNPRuntime.cpp in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to execute arbitrary code or ca…
|
NVD-CWE-Other
|
CVE-2016-1966
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267909
|
4.3 |
MEDIUM
Network
|
mozilla opensuse oracle
|
firefox opensuse linux
|
Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 mishandle a navigation sequence that returns to the original page, which allows remote attackers to spoof the address bar via vectors invo…
|
CWE-254
7PK - Security Features
|
CVE-2016-1965
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267910
|
8.8 |
HIGH
Network
|
oracle suse opensuse mozilla
|
linux linux_enterprise leap opensuse firefox thunderbird
|
Use-after-free vulnerability in the AtomicBaseIncDec function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to execute arbitrary code or cause a denial of se…
|
NVD-CWE-Other
|
CVE-2016-1964
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|