|
278081
|
- |
|
oracle mozilla opensuse
|
solaris firefox opensuse
|
Double free vulnerability in the nsXMLHttpRequest::GetResponse function in Mozilla Firefox before 36.0, when a nonstandard memory allocator is used, allows remote attackers to execute arbitrary code …
|
NVD-CWE-Other
|
CVE-2015-0828
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278082
|
- |
|
mozilla
|
firefox firefox_esr thunderbird
|
Heap-based buffer overflow in the mozilla::gfx::CopyRect function in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 allows remote attackers to obtain sensitive…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0827
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278083
|
- |
|
mozilla opensuse canonical
|
firefox opensuse ubuntu_linux
|
The nsTransformedTextRun::SetCapitalization function in Mozilla Firefox before 36.0 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read of heap memory) …
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0826
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278084
|
- |
|
canonical opensuse mozilla
|
ubuntu_linux opensuse firefox
|
Stack-based buffer underflow in the mozilla::MP3FrameParser::ParseBuffer function in Mozilla Firefox before 36.0 allows remote attackers to obtain sensitive information from process memory via a malf…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0825
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278085
|
- |
|
opensuse canonical mozilla
|
opensuse ubuntu_linux firefox
|
The mozilla::layers::BufferTextureClient::AllocateForSurface function in Mozilla Firefox before 36.0 allows remote attackers to cause a denial of service (out-of-bounds write of zero values, and appl…
|
CWE-119
Incorrect Access of Indexable Resource ('Range Error')
|
CVE-2015-0824
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278086
|
- |
|
canonical opentype_sanitiser_project mozilla opensuse
|
ubuntu_linux opentype_sanitiser firefox opensuse
|
Multiple use-after-free vulnerabilities in OpenType Sanitiser, as used in Mozilla Firefox before 36.0, might allow remote attackers to trigger problematic Developer Console information or possibly ha…
|
NVD-CWE-Other
|
CVE-2015-0823
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278087
|
- |
|
mozilla
|
firefox thunderbird firefox_esr
|
The Form Autocompletion feature in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 allows remote attackers to read arbitrary files via crafted JavaScript code.
|
CWE-200
Information Exposure
|
CVE-2015-0822
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278088
|
- |
|
mozilla opensuse canonical
|
firefox opensuse ubuntu_linux
|
Mozilla Firefox before 36.0 allows user-assisted remote attackers to read arbitrary files or execute arbitrary JavaScript code with chrome privileges via a crafted web site that is accessed with unsp…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2015-0821
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278089
|
- |
|
opensuse mozilla canonical
|
opensuse firefox ubuntu_linux
|
Mozilla Firefox before 36.0 does not properly restrict transitions of JavaScript objects from a non-extensible state to an extensible state, which allows remote attackers to bypass a Caja Compiler sa…
|
CWE-284
Improper Access Control
|
CVE-2015-0820
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
278090
|
- |
|
mozilla opensuse canonical
|
firefox opensuse ubuntu_linux
|
The UITour::onPageEvent function in Mozilla Firefox before 36.0 does not ensure that an API call originates from a foreground tab, which allows remote attackers to conduct spoofing and clickjacking a…
|
CWE-19
Data Processing Errors
|
CVE-2015-0819
|
2024-11-21 11:23 |
2015-02-25 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|