|
270121
|
- |
|
oracle mozilla canonical opensuse
|
solaris firefox ubuntu_linux opensuse
|
Use-after-free vulnerability in the XMLHttpRequest::Open implementation in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 might allow remote attackers to execute arbitrary code via a Sh…
|
NVD-CWE-Other
|
CVE-2015-4492
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270122
|
- |
|
gnome oracle fedoraproject canonical opensuse
|
gdk-pixbuf solaris fedora ubuntu_linux opensuse
|
Integer overflow in the make_filter_table function in pixops/pixops.c in gdk-pixbuf before 2.31.5, as used in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 on Linux, Google Chrome on L…
|
CWE-189
Numeric Errors
|
CVE-2015-4491
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270123
|
- |
|
mozilla canonical opensuse oracle
|
firefox ubuntu_linux opensuse solaris
|
The nsCSPHostSrc::permits function in dom/security/nsCSPUtils.cpp in Mozilla Firefox before 40.0 does not implement the Content Security Policy Level 2 exceptions for the blob, data, and filesystem U…
|
CWE-79
Cross-site Scripting
|
CVE-2015-4490
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270124
|
- |
|
oracle mozilla canonical opensuse
|
solaris firefox firefox_os ubuntu_linux opensuse
|
The nsTArray_Impl class in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 might allow remote attackers to cause a denial of service (memory corruption) or possib…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-4489
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270125
|
- |
|
oracle canonical opensuse mozilla
|
solaris ubuntu_linux opensuse firefox_os firefox
|
Use-after-free vulnerability in the StyleAnimationValue class in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 allows remote attackers to have an unspecified im…
|
NVD-CWE-Other
|
CVE-2015-4488
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270126
|
- |
|
mozilla canonical opensuse oracle
|
firefox firefox_os ubuntu_linux opensuse solaris
|
The nsTSubstring::ReplacePrep function in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 might allow remote attackers to cause a denial of service (memory corrup…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-4487
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270127
|
- |
|
canonical opensuse mozilla oracle
|
ubuntu_linux opensuse firefox solaris
|
The decrease_ref_count function in libvpx in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-4486
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270128
|
- |
|
mozilla canonical opensuse oracle
|
firefox ubuntu_linux opensuse solaris
|
Heap-based buffer overflow in the resize_context_buffers function in libvpx in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to execute arbitrary code via malfo…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-4485
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270129
|
- |
|
canonical opensuse mozilla oracle
|
ubuntu_linux opensuse firefox solaris
|
The js::jit::AssemblerX86Shared::lock_addl function in the JavaScript implementation in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to cause a denial of servi…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-4484
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
270130
|
- |
|
oracle mozilla opensuse
|
solaris firefox opensuse
|
Mozilla Firefox before 40.0 allows man-in-the-middle attackers to bypass a mixed-content protection mechanism via a feed: URL in a POST request.
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-4483
|
2024-11-21 11:31 |
2015-08-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|