|
301
|
-
9.3
|
HIGH
|
Use-after-free vulnerability in the nsViewManager::ProcessPendingUpdates function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute…
|
CWE-416
Use After Free
|
CVE-2012-4217
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
302
|
-
9.3
|
HIGH
|
Use-after-free vulnerability in the nsEditor::FindNextLeafNode function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary…
|
CWE-416
Use After Free
|
CVE-2012-4213
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
303
|
-
10.0
|
HIGH
|
Use-after-free vulnerability in the XPCWrappedNative::Mark function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary cod…
|
CWE-416
Use After Free
|
CVE-2012-4212
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
304
|
-
9.3
|
HIGH
|
Heap-based buffer overflow in the nsWindow::OnExposeEvent function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and S…
|
CWE-787
Out-of-bounds Write
|
CVE-2012-5829
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:45
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
305
|
-
9.3
|
HIGH
|
Use-after-free vulnerability in the gfxFont::GetFontEntry function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and S…
|
CWE-416
Use After Free
|
CVE-2012-4216
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
306
|
-
9.3
|
HIGH
|
Use-after-free vulnerability in the nsPlaintextEditor::FireClipboardEvent function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x befor…
|
CWE-416
Use After Free
|
CVE-2012-4215
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
307
|
-
9.3
|
HIGH
|
Use-after-free vulnerability in the nsTextEditorState::PrepareEditor function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.…
|
CWE-416
Use After Free
|
CVE-2012-4214
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
308
|
-
4.3
|
MEDIUM
|
Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 do not prevent use of a "top" frame name-attribut…
|
CWE-79
Cross-site Scripting
|
CVE-2012-4209
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
309
|
-
4.3
|
MEDIUM
|
The XrayWrapper implementation in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 does not consider the compartment during property filtering, which allows remote atta…
|
CWE-200
Information Exposure
|
CVE-2012-4208
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
310
|
-
6.8
|
MEDIUM
|
Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 assign the system principal, rather than the sandbox principal, to XMLHttpRequest objects created in sandboxes, which a…
|
CWE-352
Origin Validation Error
|
CVE-2012-4205
|
cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_enterprise_server:11:sp2 cpe:2.3:o:suse:linux_…
|
|
|
|
|
2024-11-21 10:42
2012-11-21
|
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|