|
271371
|
- |
|
opensuse mozilla
|
opensuse firefox
|
The WebChannel.jsm module in Mozilla Firefox before 38.0 allows remote attackers to bypass the Same Origin Policy and obtain sensitive webchannel-response data via a crafted web site containing an IF…
|
CWE-200
Information Exposure
|
CVE-2015-2718
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271372
|
- |
|
mozilla opensuse
|
firefox opensuse
|
Integer overflow in libstagefright in Mozilla Firefox before 38.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap-based buffer overflow and out-of-bounds read) vi…
|
CWE-189
Numeric Errors
|
CVE-2015-2717
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271373
|
- |
|
mozilla novell opensuse oracle
|
firefox suse_linux_enterprise_server suse_linux_enterprise_desktop opensuse suse_linux_enterprise_software_development_kit thunderbird solaris firefox_esr
|
Buffer overflow in the XML parser in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code by providing a large amou…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2716
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271374
|
- |
|
mozilla opensuse
|
firefox opensuse
|
Race condition in the nsThreadManager::RegisterCurrentThread function in Mozilla Firefox before 38.0 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free and…
|
CWE-362
Race Condition
|
CVE-2015-2715
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271375
|
- |
|
mozilla
|
firefox
|
Mozilla Firefox before 38.0 on Android does not properly restrict writing URL data to the Android logging system, which allows attackers to obtain sensitive information via a crafted application that…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-2714
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271376
|
- |
|
novell opensuse mozilla
|
suse_linux_enterprise_server suse_linux_enterprise_desktop opensuse suse_linux_enterprise_software_development_kit firefox thunderbird firefox_esr
|
Use-after-free vulnerability in the SetBreaks function in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code or c…
|
NVD-CWE-Other
|
CVE-2015-2713
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271377
|
- |
|
mozilla opensuse
|
firefox opensuse
|
The asm.js implementation in Mozilla Firefox before 38.0 does not properly determine heap lengths during identification of cases in which bounds checking may be safely skipped, which allows remote at…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2712
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271378
|
- |
|
opensuse mozilla
|
opensuse firefox
|
Mozilla Firefox before 38.0 does not recognize a referrer policy delivered by a referrer META element in cases of context-menu navigation and middle-click navigation, which allows remote attackers to…
|
CWE-200
Information Exposure
|
CVE-2015-2711
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271379
|
- |
|
mozilla novell opensuse
|
thunderbird firefox_esr firefox suse_linux_enterprise_server suse_linux_enterprise_desktop opensuse suse_linux_enterprise_software_development_kit
|
Heap-based buffer overflow in the SVGTextFrame class in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code via cr…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-2710
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
271380
|
- |
|
mozilla novell opensuse
|
firefox suse_linux_enterprise_server suse_linux_enterprise_desktop opensuse suse_linux_enterprise_software_development_kit
|
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 38.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly exe…
|
NVD-CWE-noinfo
|
CVE-2015-2709
|
2024-11-21 11:27 |
2015-05-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|