Lucene search

K
freebsdFreeBSDBD62C640-9BB9-11E4-A5AD-000C297FB80F
HistoryJan 13, 2015 - 12:00 a.m.

mozilla -- multiple vulnerabilities

2015-01-1300:00:00
vuxml.freebsd.org
20

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.937

Percentile

99.2%

The Mozilla Project reports:

MFSA-2015-01 Miscellaneous memory safety hazards (rv:35.0
/ rv:31.4)
MFSA-2015-02 Uninitialized memory use during bitmap
rendering
MFSA-2015-03 sendBeacon requests lack an Origin header
MFSA-2015-04 Cookie injection through Proxy Authenticate
responses
MFSA-2015-05 Read of uninitialized memory in Web Audio
MFSA-2015-06 Read-after-free in WebRTC
MFSA-2015-07 Gecko Media Plugin sandbox escape
MFSA-2015-08 Delegated OCSP responder certificates failure
with id-pkix-ocsp-nocheck extension
MFSA-2015-09 XrayWrapper bypass through DOM objects

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

EPSS

0.937

Percentile

99.2%