Lucene search

K
freebsdFreeBSD985D4D6C-CFBD-11E3-A003-B4B52FCE4CE8
HistoryApr 29, 2014 - 12:00 a.m.

mozilla -- multiple vulnerabilities

2014-04-2900:00:00
vuxml.freebsd.org
17

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.021 Low

EPSS

Percentile

89.2%

The Mozilla Project reports:

MFSA 2014-34 Miscellaneous memory safety hazards
(rv:29.0 / rv:24.5)
MFSA 2014-35 Privilege escalation through Mozilla Maintenance
Service Installer
MFSA 2014-36 Web Audio memory corruption issues
MFSA 2014-37 Out of bounds read while decoding JPG images
MFSA 2014-38 Buffer overflow when using non-XBL object as
XBL
MFSA 2014-39 Use-after-free in the Text Track Manager
for HTML video
MFSA 2014-41 Out-of-bounds write in Cairo
MFSA 2014-42 Privilege escalation through Web Notification
API
MFSA 2014-43 Cross-site scripting (XSS) using history
navigations
MFSA 2014-44 Use-after-free in imgLoader while resizing
images
MFSA 2014-45 Incorrect IDNA domain name matching for
wildcard certificates
MFSA 2014-46 Use-after-free in nsHostResolve
MFSA 2014-47 Debugger can bypass XrayWrappers
with JavaScript

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

0.021 Low

EPSS

Percentile

89.2%