Search CVE reports
71 – 80 of 127 results
The crypto.signText function in Mozilla Firefox and Thunderbird before 1.5.0.4 allows remote attackers to execute arbitrary code via certain optional Certificate Authority name arguments, which causes an invalid array index and...
6 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird, xulrunner
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |
| xulrunner | — | — | — | — |
Unspecified vulnerability in Mozilla Firefox before 1.5.0.4 and SeaMonkey before 1.0.2 allows remote attackers to execute arbitrary code by using the nsISelectionPrivate interface of the Selection object to add a SelectionListener...
5 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |
Certain privileged UI code in Mozilla Firefox and Thunderbird before 1.5.0.4 calls content-defined setters on an object prototype, which allows remote attackers to execute code at a higher privilege than intended.
6 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird, xulrunner
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |
| xulrunner | — | — | — | — |
Mozilla Firefox and Thunderbird before 1.5.0.4 associates XUL attributes with the wrong URL under certain unspecified circumstances, which might allow remote attackers to bypass restrictions by causing a persisted string to be...
6 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird, xulrunner
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |
| xulrunner | — | — | — | — |
Mozilla Firefox 1.5.0.2, when designMode is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain Javascript that is not properly handled by the contentWindow.focus method in...
4 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
A regression fix in Mozilla Firefox 1.0.7 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via the InstallTrigger.install method, which leads to memory corruption.
5 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |
Unspecified vulnerability in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to cause a denial of service (crash) by changing the...
5 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |
Integer overflow in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to cause a denial of service (crash) and possibly execute...
5 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |
The JavaScript engine in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 does not properly handle temporary variables that are not garbage collected,...
6 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird, xulrunner
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |
| xulrunner | — | — | — | — |
Mozilla Firefox 1.x before 1.5 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0 allows remote attackers to inject arbitrary Javascript into other sites by (1) "using a modal alert to suspend an event...
5 affected packages
firefox, firefox-granparadiso, lightning-sunbird, midbrowser, mozilla-thunderbird
| Package | 24.04 LTS | 22.04 LTS | 20.04 LTS | 18.04 LTS |
|---|---|---|---|---|
| firefox | — | — | — | — |
| firefox-granparadiso | — | — | — | — |
| lightning-sunbird | — | — | — | — |
| midbrowser | — | — | — | — |
| mozilla-thunderbird | — | — | — | — |