NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25927  CVE-2015-4504  The lut_inverse_interp16 function in the QCMS library in Mozilla Firefox before 41.0 allows remote attackers to obtain sensitive information or cause a denial of service (buffer over-read and application crash) via crafted attributes in the ICC 4 profile of an image.    6.4  Medium  2017-01-19  2016-12-21  View
25926  CVE-2015-4503  The TCP Socket API implementation in Mozilla Firefox before 41.0 mishandles array boundaries that were established with a navigator.mozTCPSocket.open method call and send method calls, which allows remote TCP servers to obtain sensitive information from process memory by reading packet data, as demonstrated by availability of this API in a Firefox OS application.    Medium  2017-01-19  2016-12-21  View
25925  CVE-2015-4502  js/src/proxy/Proxy.cpp in Mozilla Firefox before 41.0 mishandles certain receiver arguments, which allows remote attackers to bypass intended window access restrictions via a crafted web site.    4.3  Medium  2017-01-19  2016-12-21  View
25924  CVE-2015-4501  Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.    7.5  High  2017-01-19  2016-12-21  View
25923  CVE-2015-4500  Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.    7.5  High  2017-01-19  2016-12-21  View

Page 3173 of 17672, showing 5 records out of 88360 total, starting on record 15861, ending on 15865

Actions