NVD List

Id Name Description Reject CVSS Version CVSS Score Severity Pub Date Modified Date Actions
25902  CVE-2015-4479  Multiple integer overflows in libstagefright in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allow remote attackers to execute arbitrary code via a crafted saio chunk in MPEG-4 video data.    10  High  2017-01-19  2016-12-23  View
25901  CVE-2015-4478  Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 do not impose certain ECMAScript 6 requirements on JavaScript object properties, which allows remote attackers to bypass the Same Origin Policy via the reviver parameter to the JSON.parse method.    Medium  2017-01-19  2016-12-23  View
25900  CVE-2015-4477  Use-after-free vulnerability in the MediaStream playback feature in Mozilla Firefox before 40.0 allows remote attackers to execute arbitrary code via unspecified use of the Web Audio API.    10  High  2017-01-19  2016-12-23  View
25899  CVE-2015-4476  Mozilla Firefox before 41.0 on Android allows user-assisted remote attackers to spoof address-bar attributes by leveraging lack of navigation after a paste of a URL with a nonstandard scheme, as demonstrated by spoofing an SSL attribute.    4.3  Medium  2017-01-19  2016-12-21  View
25898  CVE-2015-4475  The mozilla::AudioSink function in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 mishandles inconsistent sample formats within MP3 audio data, which allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via a malformed file.    7.5  High  2017-01-19  2016-12-23  View

Page 3178 of 17672, showing 5 records out of 88360 total, starting on record 15886, ending on 15890

Actions