Kaspersky ID:
KLA11628
Detekováno:
01/07/2020
Aktualizováno:
01/28/2026

Popis

Multiple vulnerabilities were found in Mozilla Firefox. Malicious users can exploit these vulnerabilities to execute arbitrary code, cause denial of service, obtain sensitive information, bypass security restrictions, perform cross-site scripting attack.

Below is a complete list of vulnerabilities:

  1. ACE vulnerability on Windows can be exploited locally.
  2. Memory corruption vulnerability can be exploited locally to execute arbitrary code.
  3. Memory corruption vulnerability on Windows can be exploited locally to obtain sensitive information.
  4. Bypass security vulnerability can be exploited locally to obtain sensitive information.
  5. Type confusion vulnerability can be exploited locally to execute arbitrary code.
  6. Bypass security vulnerability can be exploited locally to use lower protocol that TLS 1.3.
  7. CSS sanitization vulnerability can be exploited locally.
  8. Bypass security vulnerability on Windows can be exploited locally to obtain sensitive information.
  9. Memory corruption vulnerability on Windows can be exploited locally to cause denial of service.

Oficiální doporučení

Vykořisťování

Public exploits exist for this vulnerability.

Související produkty

seznam CVE

  • CVE-2019-17019
    critical
  • CVE-2019-17024
    critical
  • CVE-2019-17021
    high
  • CVE-2019-17016
    high
  • CVE-2019-17017
    critical
  • CVE-2019-17025
    critical
  • CVE-2019-17023
    high
  • CVE-2019-17022
    high
  • CVE-2019-17020
    high
  • CVE-2019-17018
    high
  • CVE-2019-17015
    critical

Zobrazit více

Zjistěte statistiky zranitelností šířících se ve vaší oblasti statistics.securelist.com

Našli jste v popisu této chyby zabezpečení nepřesnost? Dej nám vědět!
Kaspersky Next
Let’s go Next: redefine your business’s cybersecurity
Zjistěte více
Kaspersky Premium
Zjistěte více
Do you want to save your changes?
Your message has been sent successfully.