Show filters
201 Total Results
Displaying 161-170 of 201
Sort by:
Attacker Value
Unknown

CVE-2015-7201

Disclosure Date: December 16, 2015 (last updated October 23, 2024)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown

CVE-2015-7220

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Buffer overflow in the XDRBuffer::grow function in js/src/vm/Xdr.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact via crafted JavaScript code.
0
Attacker Value
Unknown

CVE-2015-7213

Disclosure Date: December 16, 2015 (last updated October 23, 2024)
Integer overflow in the MPEG4Extractor::readMetaData function in MPEG4Extractor.cpp in libstagefright in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 on 64-bit platforms allows remote attackers to execute arbitrary code via a crafted MP4 video file that triggers a buffer overflow.
0
Attacker Value
Unknown

CVE-2015-7202

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 43.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown

CVE-2015-7214

Disclosure Date: December 16, 2015 (last updated October 23, 2024)
Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allow remote attackers to bypass the Same Origin Policy via data: and view-source: URIs.
0
Attacker Value
Unknown

CVE-2015-7223

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
The WebExtension APIs in Mozilla Firefox before 43.0 allow remote attackers to gain privileges, and possibly obtain sensitive information or conduct cross-site scripting (XSS) attacks, via a crafted web site.
0
Attacker Value
Unknown

CVE-2015-7215

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
The importScripts function in the Web Workers API implementation in Mozilla Firefox before 43.0 allows remote attackers to bypass the Same Origin Policy by triggering use of the no-cors mode in the fetch API to attempt resource access that throws an exception, leading to information disclosure after a rethrow.
0
Attacker Value
Unknown

CVE-2015-7212

Disclosure Date: December 16, 2015 (last updated October 23, 2024)
Integer overflow in the mozilla::layers::BufferTextureClient::AllocateForSurface function in Mozilla Firefox before 43.0 and Firefox ESR 38.x before 38.5 allows remote attackers to execute arbitrary code by triggering a graphics operation that requires a large texture allocation.
0
Attacker Value
Unknown

CVE-2015-7207

Disclosure Date: December 16, 2015 (last updated October 05, 2023)
Mozilla Firefox before 43.0 does not properly restrict the availability of IFRAME Resource Timing API times, which allows remote attackers to bypass the Same Origin Policy and obtain sensitive information via crafted JavaScript code that leverages history.back and performance.getEntries calls, a related issue to CVE-2015-1300.
0
Attacker Value
Unknown

CVE-2015-7496

Disclosure Date: November 24, 2015 (last updated October 05, 2023)
GNOME Display Manager (gdm) before 3.18.2 allows physically proximate attackers to bypass the lock screen by holding the Escape key.
0