Show filters
80 Total Results
Displaying 71-80 of 80
Sort by:
Attacker Value
Unknown

CVE-2015-4517

Disclosure Date: September 24, 2015 (last updated October 23, 2024)
NetworkUtils.cpp in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2015-4519

Disclosure Date: September 24, 2015 (last updated October 23, 2024)
Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow user-assisted remote attackers to bypass intended access restrictions and discover a redirect's target URL via crafted JavaScript code that executes after a drag-and-drop action of an image into a TEXTBOX element.
0
Attacker Value
Unknown

CVE-2015-4500

Disclosure Date: September 24, 2015 (last updated October 23, 2024)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
0
Attacker Value
Unknown

CVE-2015-7179

Disclosure Date: September 24, 2015 (last updated October 23, 2024)
The VertexBufferInterface::reserveVertexSpace function in libGLES in ANGLE, as used in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 on Windows, incorrectly allocates memory for shader attribute arrays, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via crafted (1) OpenGL or (2) WebGL content.
0
Attacker Value
Unknown

CVE-2015-4511

Disclosure Date: September 24, 2015 (last updated October 23, 2024)
Heap-based buffer overflow in the nestegg_track_codec_data function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allows remote attackers to execute arbitrary code via a crafted header in a WebM video.
0
Attacker Value
Unknown

CVE-2015-4521

Disclosure Date: September 24, 2015 (last updated October 23, 2024)
The ConvertDialogOptions function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2015-7177

Disclosure Date: September 24, 2015 (last updated October 23, 2024)
The InitTextures function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors.
0
Attacker Value
Unknown

CVE-2015-4509

Disclosure Date: September 24, 2015 (last updated October 23, 2024)
Use-after-free vulnerability in the HTMLVideoElement interface in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allows remote attackers to execute arbitrary code via crafted JavaScript code that modifies the URI table of a media element, aka ZDI-CAN-3176.
0
Attacker Value
Unknown

CVE-2015-4497

Disclosure Date: August 29, 2015 (last updated October 23, 2024)
Use-after-free vulnerability in the CanvasRenderingContext2D implementation in Mozilla Firefox before 40.0.3 and Firefox ESR 38.x before 38.2.1 allows remote attackers to execute arbitrary code by leveraging improper interaction between resize events and changes to Cascading Style Sheets (CSS) token sequences for a CANVAS element.
0
Attacker Value
Unknown

CVE-2015-4498

Disclosure Date: August 29, 2015 (last updated October 23, 2024)
The add-on installation feature in Mozilla Firefox before 40.0.3 and Firefox ESR 38.x before 38.2.1 allows remote attackers to bypass an intended user-confirmation requirement by constructing a crafted data: URL and triggering navigation to an arbitrary http: or https: URL at a certain early point in the installation process.
0