|
265491
|
5.0 |
MEDIUM
Local
|
qemu canonical debian
|
qemu ubuntu_linux debian_linux
|
The ohci_bus_start function in the USB OHCI emulation support (hw/usb/hcd-ohci.c) in QEMU allows local guest OS administrators to cause a denial of service (NULL pointer dereference and QEMU process …
|
CWE-476
NULL Pointer Dereference
|
CVE-2016-2391
|
2024-11-21 11:48 |
2016-06-17 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265492
|
8.8 |
HIGH
Network
|
canonical opensuse mozilla novell
|
ubuntu_linux leap opensuse network_security_services firefox suse_linux_enterprise_server suse_linux_enterprise_desktop suse_linux_enterprise_software_development_kit
|
Mozilla Network Security Services (NSS) before 3.23, as used in Mozilla Firefox before 47.0, allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly…
|
NVD-CWE-noinfo
|
CVE-2016-2834
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265493
|
6.1 |
MEDIUM
Network
|
opensuse mozilla canonical
|
leap opensuse firefox ubuntu_linux
|
Mozilla Firefox before 47.0 ignores Content Security Policy (CSP) directives for cross-domain Java applets, which makes it easier for remote attackers to conduct cross-site scripting (XSS) attacks vi…
|
CWE-79 CWE-254
Cross-site Scripting 7PK - Security Features
|
CVE-2016-2833
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265494
|
4.3 |
MEDIUM
Network
|
canonical mozilla opensuse
|
ubuntu_linux firefox leap opensuse
|
Mozilla Firefox before 47.0 allows remote attackers to discover the list of disabled plugins via a fingerprinting attack involving Cascading Style Sheets (CSS) pseudo-classes.
|
CWE-200
Information Exposure
|
CVE-2016-2832
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265495
|
8.8 |
HIGH
Network
|
canonical mozilla debian opensuse
|
ubuntu_linux firefox debian_linux leap opensuse
|
Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 do not ensure that the user approves the fullscreen and pointerlock settings, which allows remote attackers to cause a denial of service (…
|
CWE-254 CWE-284
7PK - Security Features Improper Access Control
|
CVE-2016-2831
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265496
|
6.5 |
MEDIUM
Network
|
canonical mozilla opensuse
|
ubuntu_linux firefox leap opensuse
|
Mozilla Firefox before 47.0 allows remote attackers to spoof permission notifications via a crafted web site that rapidly triggers permission requests, as demonstrated by the microphone permission or…
|
CWE-284
Improper Access Control
|
CVE-2016-2829
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265497
|
8.8 |
HIGH
Network
|
canonical opensuse mozilla debian
|
ubuntu_linux leap opensuse firefox debian_linux
|
Use-after-free vulnerability in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 allows remote attackers to execute arbitrary code via WebGL content that triggers texture access after des…
|
NVD-CWE-Other
|
CVE-2016-2828
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265498
|
7.8 |
HIGH
Local
|
mozilla
|
firefox
|
The maintenance service in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 on Windows does not prevent MAR extracted-file modification during updater execution, which might allow local u…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2016-2826
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265499
|
6.5 |
MEDIUM
Network
|
canonical opensuse mozilla
|
ubuntu_linux leap opensuse firefox
|
Mozilla Firefox before 47.0 allows remote attackers to bypass the Same Origin Policy and modify the location.host property via an invalid data: URL.
|
CWE-284
Improper Access Control
|
CVE-2016-2825
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
265500
|
8.8 |
HIGH
Network
|
mozilla opensuse
|
firefox leap opensuse
|
The TSymbolTableLevel class in ANGLE, as used in Mozilla Firefox before 47.0 and Firefox ESR 45.x before 45.2 on Windows, allows remote attackers to cause a denial of service (out-of-bounds write and…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-2824
|
2024-11-21 11:48 |
2016-06-13 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|