|
267771
|
- |
|
opensuse mozilla fedoraproject
|
leap opensuse firefox fedora
|
Buffer overflow in the XDRBuffer::grow function in js/src/vm/Xdr.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7220
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267772
|
- |
|
opensuse mozilla fedoraproject
|
leap opensuse firefox fedora
|
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a malformed PushPromise …
|
CWE-189
Numeric Errors
|
CVE-2015-7219
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267773
|
- |
|
opensuse fedoraproject mozilla
|
leap opensuse fedora firefox
|
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a single-byte header fra…
|
CWE-189
Numeric Errors
|
CVE-2015-7218
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267774
|
- |
|
mozilla opensuse fedoraproject
|
firefox leap opensuse fedora
|
The gdk-pixbuf configuration in Mozilla Firefox before 43.0 on Linux GNOME platforms incorrectly enables the TGA decoder, which allows remote attackers to cause a denial of service (heap-based buffer…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7217
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267775
|
- |
|
fedoraproject mozilla opensuse
|
fedora firefox leap opensuse
|
The gdk-pixbuf configuration in Mozilla Firefox before 43.0 on Linux GNOME platforms incorrectly enables the JasPer decoder, which allows remote attackers to cause a denial of service or possibly hav…
|
CWE-20
Improper Input Validation
|
CVE-2015-7216
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267776
|
- |
|
fedoraproject opensuse mozilla
|
fedora leap opensuse firefox
|
The importScripts function in the Web Workers API implementation in Mozilla Firefox before 43.0 allows remote attackers to bypass the Same Origin Policy by triggering use of the no-cors mode in the f…
|
CWE-200
Information Exposure
|
CVE-2015-7215
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267777
|
- |
|
opensuse mozilla fedoraproject
|
leap opensuse firefox fedora
|
Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to bypass the Same Origin Policy via data: and view-source: URIs.
|
CWE-200
Information Exposure
|
CVE-2015-7214
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267778
|
- |
|
opensuse fedoraproject mozilla
|
leap opensuse fedora firefox
|
Integer overflow in the MPEG4Extractor::readMetaData function in MPEG4Extractor.cpp in libstagefright in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 on 64-bit platforms allows remote…
|
CWE-189
Numeric Errors
|
CVE-2015-7213
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267779
|
- |
|
fedoraproject opensuse mozilla
|
fedora leap opensuse firefox
|
Integer overflow in the mozilla::layers::BufferTextureClient::AllocateForSurface function in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary …
|
CWE-189
Numeric Errors
|
CVE-2015-7212
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267780
|
- |
|
mozilla fedoraproject opensuse
|
firefox fedora leap opensuse
|
Mozilla Firefox before 43.0 mishandles the # (number sign) character in a data: URI, which allows remote attackers to spoof web sites via unspecified vectors.
|
CWE-20
Improper Input Validation
|
CVE-2015-7211
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|