Search CVE reports


Toggle filters

2611 – 2620 of 3039 results


CVE-2010-0167

Medium priority

Some fixes available 11 of 13

The browser engine in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x before 3.6.2; Thunderbird before 3.0.2; and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption...

5 affected packages

firefox, seamonkey, thunderbird, xulrunner-1.9, xulrunner-1.9.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
seamonkey
thunderbird
xulrunner-1.9
xulrunner-1.9.1
Show less packages

CVE-2010-0165

Medium priority
Ignored

The TraceRecorder::traverseScopeChain function in js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (memory corruption and application crash) and...

1 affected package

firefox

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2010-0164

Medium priority
Ignored

Use-after-free vulnerability in the imgContainer::InternalAddFrameHelper function in src/imgContainer.cpp in libpr0n in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (heap memory corruption...

1 affected package

firefox

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2010-1121

Medium priority

Some fixes available 6 of 12

Mozilla Firefox 3.6.x before 3.6.3 does not properly manage the scopes of DOM nodes that are moved from one document to another, which allows remote attackers to conduct use-after-free attacks and execute arbitrary code...

5 affected packages

firefox, thunderbird, xulrunner-1.9, xulrunner-1.9.1, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
thunderbird
xulrunner-1.9
xulrunner-1.9.1
xulrunner-1.9.2
Show less packages

CVE-2010-1028

Medium priority
Ignored

Integer overflow in the decompression functionality in the Web Open Fonts Format (WOFF) decoder in Mozilla Firefox 3.6 before 3.6.2 and 3.7 before 3.7 alpha 3 allows remote attackers to execute arbitrary code via a crafted WOFF...

1 affected package

firefox

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
Show less packages

CVE-2010-0205

Medium priority

Some fixes available 5 of 7

The png_decompress_chunk function in pngrutil.c in libpng 1.0.x before 1.0.53, 1.2.x before 1.2.43, and 1.4.x before 1.4.1 does not properly handle compressed ancillary-chunk data that has a disproportionately large uncompressed...

2 affected packages

firefox, libpng

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
libpng
Show less packages

CVE-2010-0648

Medium priority

Some fixes available 1 of 4

Mozilla Firefox, possibly before 3.6, allows remote attackers to discover a redirect's target URL, for the session of a specific user of a web site, by placing the site's URL in the HREF attribute of a stylesheet LINK element, and...

2 affected packages

firefox, xulrunner-1.9.2

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
xulrunner-1.9.2
Show less packages

CVE-2010-0654

Low priority

Some fixes available 18 of 34

Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, Thunderbird 3.0.x before 3.0.6 and 3.1.x before 3.1.1, and SeaMonkey before 2.0.6 permit cross-origin loading of CSS stylesheets even when the stylesheet download has an...

7 affected packages

firefox, seamonkey, thunderbird, xulrunner, xulrunner-1.9...

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
seamonkey
thunderbird
xulrunner
xulrunner-1.9
xulrunner-1.9.1
xulrunner-1.9.2
Show all 7 packages Show less packages

CVE-2010-0162

Low priority

Some fixes available 9 of 12

Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly support the application/octet-stream content type as a protection mechanism against execution of web script in certain...

6 affected packages

firefox, mozilla-thunderbird, seamonkey, thunderbird, xulrunner-1.9, xulrunner-1.9.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
mozilla-thunderbird
seamonkey
thunderbird
xulrunner-1.9
xulrunner-1.9.1
Show less packages

CVE-2010-0160

Medium priority

Some fixes available 9 of 12

The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to cause a denial...

6 affected packages

firefox, mozilla-thunderbird, seamonkey, thunderbird, xulrunner-1.9, xulrunner-1.9.1

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox
mozilla-thunderbird
seamonkey
thunderbird
xulrunner-1.9
xulrunner-1.9.1
Show less packages