|
267241
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Race condition in libvpx in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (use-after-free) or possibly have unspecified other impact via unknown vec…
|
NVD-CWE-Other
|
CVE-2016-1972
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267242
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
The I420VideoFrame::CreateFrame function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows omits an unspecified status check, which might allow remote attackers to cause a denial…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1971
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267243
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Integer underflow in the srtp_unprotect function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows might allow remote attackers to cause a denial of service (memory corruption) o…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1970
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267244
|
8.8 |
HIGH
Network
|
sil mozilla
|
graphite2 firefox
|
The setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.6.1, allows remote attackers to cause a denial of service (out-of-bounds write) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1969
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267245
|
8.8 |
HIGH
Network
|
mozilla
|
firefox
|
Integer underflow in Brotli, as used in Mozilla Firefox before 45.0, allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow) via crafted data with brotli comp…
|
CWE-189
Numeric Errors
|
CVE-2016-1968
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267246
|
6.5 |
MEDIUM
Network
|
mozilla
|
firefox
|
Mozilla Firefox before 45.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive inform…
|
CWE-200
Information Exposure
|
CVE-2016-1967
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267247
|
8.8 |
HIGH
Network
|
oracle mozilla opensuse
|
linux firefox thunderbird opensuse
|
The nsNPObjWrapper::GetNewOrUsed function in dom/plugins/base/nsJSNPRuntime.cpp in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to execute arbitrary code or ca…
|
NVD-CWE-Other
|
CVE-2016-1966
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267248
|
4.3 |
MEDIUM
Network
|
mozilla opensuse oracle
|
firefox opensuse linux
|
Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 mishandle a navigation sequence that returns to the original page, which allows remote attackers to spoof the address bar via vectors invo…
|
CWE-254
7PK - Security Features
|
CVE-2016-1965
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267249
|
8.8 |
HIGH
Network
|
oracle suse opensuse mozilla
|
linux linux_enterprise leap opensuse firefox thunderbird
|
Use-after-free vulnerability in the AtomicBaseIncDec function in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to execute arbitrary code or cause a denial of se…
|
NVD-CWE-Other
|
CVE-2016-1964
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
267250
|
7.4 |
HIGH
Local
|
mozilla
|
firefox
|
The FileReader class in Mozilla Firefox before 45.0 allows local users to gain privileges or cause a denial of service (memory corruption) by changing a file during a FileReader API read operation.
|
CWE-264 CWE-119
Permissions, Privileges, and Access Controls Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2016-1963
|
2024-11-21 11:47 |
2016-03-14 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|