Show filters
201 Total Results
Displaying 161-170 of 201
Sort by:
Attacker Value
Unknown
CVE-2015-7201
Disclosure Date: December 16, 2015 (last updated October 23, 2024)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown
CVE-2015-7220
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Buffer overflow in the XDRBuffer::grow function in js/src/vm/Xdr.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code.
0
Attacker Value
Unknown
CVE-2015-7213
Disclosure Date: December 16, 2015 (last updated October 23, 2024)
Integer overflow in the MPEG4Extractor::readMetaData function in MPEG4Extractor.cpp in libstagefright in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 on 64-bit platforms allows remote attackers to execute arbitrary code via a crafted MP4 video file that triggers a buffer overflow.
0
Attacker Value
Unknown
CVE-2015-7202
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown
CVE-2015-7214
Disclosure Date: December 16, 2015 (last updated October 23, 2024)
Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to bypass the Same Origin Policy via data: and view-source: URIs.
0
Attacker Value
Unknown
CVE-2015-7223
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
The WebExtension APIs in Mozilla Firefox before 43.0 allow remote attackers to gain privileges, and possibly obtain sensitive information or conduct cross-site scripting (XSS) attacks, via a crafted web site.
0
Attacker Value
Unknown
CVE-2015-7215
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
The importScripts function in the Web Workers API implementation in Mozilla Firefox before 43.0 allows remote attackers to bypass the Same Origin Policy by triggering use of the no-cors mode in the fetch API to attempt resource access that throws an exception, leading to information disclosure after a rethrow.
0
Attacker Value
Unknown
CVE-2015-7212
Disclosure Date: December 16, 2015 (last updated October 23, 2024)
Integer overflow in the mozilla::layers::BufferTextureClient::AllocateForSurface function in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary code by triggering a graphics operation that requires a large texture allocation.
0
Attacker Value
Unknown
CVE-2015-7207
Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.
0
Attacker Value
Unknown
CVE-2015-7496
Disclosure Date: November 24, 2015 (last updated October 05, 2023)
GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.
0