Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.815731
Kategorie:General
Titel:Mozilla Firefox Security Update (mfsa_2019-36_2019-37) - Windows
Zusammenfassung:Mozilla Firefox is prone to multiple vulnerabilities.
Beschreibung:Summary:
Mozilla Firefox is prone to multiple vulnerabilities.

Vulnerability Insight:
Multiple flaws exist due to

- Use-after-free issues in SFTKSession object, worker destruction,

- A stack corruption issue due to incorrect number of arguments in WebRTC code.

- An out of bounds write issue in NSS when encrypting with a block cipher.

- Dragging and dropping of a cross-origin resource.

- A use-after-free issue when performing device orientation checks and when
retrieving a document in antitracking

- A buffer overflow issue in plain text serializer.

- Memory safety bugs.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to execute arbitrary code, gain access to sensitive information
or conduct denial of service attacks.

Affected Software/OS:
Mozilla Firefox version before 71 on Windows.

Solution:
Update to Mozilla Firefox version 71
or later. Please see the references for more information.

CVSS Score:
6.8

CVSS Vector:
AV:N/AC:M/Au:N/C:P/I:P/A:P

Querverweis: Common Vulnerability Exposure (CVE) ID: CVE-2019-11756
Common Vulnerability Exposure (CVE) ID: CVE-2019-17008
Common Vulnerability Exposure (CVE) ID: CVE-2019-13722
Common Vulnerability Exposure (CVE) ID: CVE-2019-11745
Common Vulnerability Exposure (CVE) ID: CVE-2019-17014
Common Vulnerability Exposure (CVE) ID: CVE-2019-17009
Common Vulnerability Exposure (CVE) ID: CVE-2019-17010
Common Vulnerability Exposure (CVE) ID: CVE-2019-17005
Common Vulnerability Exposure (CVE) ID: CVE-2019-17011
Common Vulnerability Exposure (CVE) ID: CVE-2019-17012
Common Vulnerability Exposure (CVE) ID: CVE-2019-17013
CopyrightCopyright (C) 2019 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.