|
269381
|
- |
|
fedoraproject mozilla opensuse
|
fedora firefox leap opensuse
|
The WebExtension APIs in Mozilla Firefox before 43.0 allow remote attackers to gain privileges, and possibly obtain sensitive information or conduct cross-site scripting (XSS) attacks, via a crafted …
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-7223
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269382
|
- |
|
mozilla opensuse fedoraproject
|
firefox leap opensuse fedora
|
Integer underflow in the Metadata::setData function in MetaData.cpp in libstagefright in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary code…
|
CWE-189
Numeric Errors
|
CVE-2015-7222
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269383
|
- |
|
mozilla fedoraproject opensuse
|
firefox fedora leap opensuse
|
Buffer overflow in the nsDeque::GrowCapacity function in xpcom/glue/nsDeque.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified o…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7221
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269384
|
- |
|
opensuse mozilla fedoraproject
|
leap opensuse firefox fedora
|
Buffer overflow in the XDRBuffer::grow function in js/src/vm/Xdr.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7220
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269385
|
- |
|
opensuse mozilla fedoraproject
|
leap opensuse firefox fedora
|
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a malformed PushPromise …
|
CWE-189
Numeric Errors
|
CVE-2015-7219
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269386
|
- |
|
opensuse fedoraproject mozilla
|
leap opensuse fedora firefox
|
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a single-byte header fra…
|
CWE-189
Numeric Errors
|
CVE-2015-7218
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269387
|
- |
|
mozilla opensuse fedoraproject
|
firefox leap opensuse fedora
|
The gdk-pixbuf configuration in Mozilla Firefox before 43.0 on Linux GNOME platforms incorrectly enables the TGA decoder, which allows remote attackers to cause a denial of service (heap-based buffer…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-7217
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269388
|
- |
|
fedoraproject mozilla opensuse
|
fedora firefox leap opensuse
|
The gdk-pixbuf configuration in Mozilla Firefox before 43.0 on Linux GNOME platforms incorrectly enables the JasPer decoder, which allows remote attackers to cause a denial of service or possibly hav…
|
CWE-20
Improper Input Validation
|
CVE-2015-7216
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269389
|
- |
|
fedoraproject opensuse mozilla
|
fedora leap opensuse firefox
|
The importScripts function in the Web Workers API implementation in Mozilla Firefox before 43.0 allows remote attackers to bypass the Same Origin Policy by triggering use of the no-cors mode in the f…
|
CWE-200
Information Exposure
|
CVE-2015-7215
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
269390
|
- |
|
opensuse mozilla fedoraproject
|
leap opensuse firefox fedora
|
Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to bypass the Same Origin Policy via data: and view-source: URIs.
|
CWE-200
Information Exposure
|
CVE-2015-7214
|
2024-11-21 11:36 |
2015-12-16 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|