Описание
Multiple vulnerabilities were found in Mozilla Firefox. Malicious users can exploit these vulnerabilities to cause denial of service, perform cross-site scripting attack, spoof user interface, bypass security restrictions, execute arbitrary code, obtain sensitive information.
Below is a complete list of vulnerabilities:
- Corrupt pointer dereference vulnerability in js::CheckTracedThing can be exploited to cause denial of service
- Denial of service vulnerability in HTTP/2 can be exploited remotely to cause denial of service.
- Integer overflow vulnerability in OpenType sanitizer can be exploited to cause denial of service.
- Out of bounds memory read in MSubstr can be exploited to cause denial of service.
- Memory safety vulnerability can be exploited to execute arbitrary code.
- Use after free vulnerability can be exploited to cause denial of service or execute arbitrary code.
- Use of uninitialized memory vulnerability in MarkStack assignment operator can be exploited to cause denial of service or execute arbitrary code.
- Out of bounds memory read can be exploited to cause denial of service.
- Use after free vulnerability in WASM garbage collection can be exploited to cause denial of service or execute arbitrary code.
- Information disclosure vulnerability in GetBoundName can be exploited to obtain sensitive information.
- Security vulnerability can be exploited to bypass security restrictions.
- Out of memory conditions vulnerability can be exploited to cause denial of service.
- Use after free vulnerability in networking can be exploited to cause denial of service or execute arbitrary code.
Первичный источник обнаружения
Связанные продукты
Список CVE
- CVE-2024-3858 warning
- CVE-2024-3302 warning
- CVE-2024-3859 warning
- CVE-2024-3855 warning
- CVE-2024-3864 warning
- CVE-2024-3861 warning
- CVE-2024-3862 warning
- CVE-2024-3853 warning
- CVE-2024-3857 warning
- CVE-2024-3854 warning
- CVE-2024-3856 warning
- CVE-2024-3852 warning
- CVE-2024-3863 warning
- CVE-2024-3860 warning
- CVE-2024-3865 warning
- CVE-2024-5702 unknown
Смотрите также
Узнай статистику распространения уязвимостей в своем регионе statistics.securelist.com
Нашли неточность в описании этой уязвимости? Дайте нам знать!