Vulnérabilités
Vulnérabilités des apps suivies
845 entrées
Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.
| CVE |
|---|
|
CVE-2018-5187
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 60 and Firefox ESR 60. Some of these bugs showed evidence of memory corruption and we presume that with enough effort tha… |
|
CVE-2018-5156
CRITICAL 9.8
Réseau 1 apps
A vulnerability can occur when capturing a media stream when the media source type is changed as the capture is occurring. This can result in stream data being… |
|
CVE-2018-12378
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when an IndexedDB index is deleted while still in use by JavaScript code that is providing payload values to be stored… |
|
CVE-2018-12377
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when refresh driver timers are refreshed in some circumstances during shutdown when the timer is deleted while still i… |
|
CVE-2018-12376
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs present in Firefox 61 and Firefox ESR 60.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort t… |
|
CVE-2018-8494
CRITICAL 7.5
MS XML Remote Code Execution Vulnerability |
|
CVE-2018-8490
CRITICAL 7.6
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2018-8489
CRITICAL 7.6
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2018-17456
CRITICAL 9.8
Réseau 1 apps
Git before 2.14.5, 2.15.x before 2.15.3, 2.16.x before 2.16.5, 2.17.x before 2.17.2, 2.18.x before 2.18.1, and 2.19.x before 2.19.1 allows remote code executio… |
|
CVE-2018-1000802
CRITICAL 9.8
Réseau 1 apps
Python Software Foundation Python (CPython) version 2.7 contains a CWE-77: Improper Neutralization of Special Elements used in a Command ('Command Injection') … |
|
CVE-2018-8475
CRITICAL 8.8
Windows Remote Code Execution Vulnerability |
|
CVE-2018-8439
CRITICAL 7.6
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2018-8420
CRITICAL 7.5
MS XML Remote Code Execution Vulnerability |
|
CVE-2018-8332
CRITICAL 8.8
Win32k Graphics Remote Code Execution Vulnerability |
|
CVE-2018-0965
CRITICAL 7.6
Windows Hyper-V Remote Code Execution Vulnerability |
|
CVE-2018-8350
CRITICAL 4.2
Windows PDF Remote Code Execution Vulnerability |
|
CVE-2018-8345
CRITICAL 7.5
LNK Remote Code Execution Vulnerability |
|
CVE-2018-8344
CRITICAL 7.8
Microsoft Graphics Remote Code Execution Vulnerability |
|
CVE-2018-8251
CRITICAL 4.2
Media Foundation Memory Corruption Vulnerability |
|
CVE-2018-8231
CRITICAL 8.1
HTTP Protocol Stack Remote Code Execution Vulnerability |
|
CVE-2018-8225
CRITICAL 8.1
Windows DNSAPI Remote Code Execution Vulnerability |
|
CVE-2018-8213
CRITICAL 7.8
Windows Remote Code Execution Vulnerability |
|
CVE-2018-5183
CRITICAL 9.8
Réseau 1 apps
Mozilla developers backported selected changes in the Skia library. These changes correct memory corruption issues including invalid buffer reads and writes du… |
|
CVE-2018-5159
CRITICAL 9.8
Réseau 1 apps
An integer overflow can occur in the Skia library due to 32-bit integer use in an array without integer overflow checks, resulting in possible out-of-bounds wr… |
|
CVE-2018-5155
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur while adjusting layout during SVG animations with text paths. This results in a potentially exploitable crash. This vu… |
|
CVE-2018-5154
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur while enumerating attributes during SVG animations with clip paths. This results in a potentially exploitable crash. T… |
|
CVE-2018-5150
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs were reported in Firefox 59, Firefox ESR 52.7, and Thunderbird 52.7. Some of these bugs showed evidence of memory corruption and we presume … |
|
CVE-2018-5146
CRITICAL 8.8
Réseau 1 apps
An out of bounds memory write while processing Vorbis audio data was reported through the Pwn2Own contest. This vulnerability affects Firefox < 59.0.1, Firefox… |
|
CVE-2018-5145
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs were reported in Firefox ESR 52.6. These bugs showed evidence of memory corruption and we presume that with enough effort that some of these… |
|
CVE-2018-5104
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur during font face manipulation when a font face is freed while still in use, resulting in a potentially exploitable cra… |
|
CVE-2018-5103
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur during mouse event handling due to issues with multiprocess support. This results in a potentially exploitable crash. … |
|
CVE-2018-5102
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when manipulating HTML media elements with media streams, resulting in a potentially exploitable crash. This vulnerabi… |
|
CVE-2018-5099
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when the widget listener is holding strong references to browser objects that have previously been freed, resulting in… |
|
CVE-2018-5098
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when form input elements, focus, and selections are manipulated by script content. This results in a potentially explo… |
|
CVE-2018-5097
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur during XSL transformations when the source document for the transformation is manipulated by script content during the… |
|
CVE-2018-5096
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur while editing events in form elements on a page, resulting in a potentially exploitable crash. This vulnerability affe… |
|
CVE-2018-5095
CRITICAL 9.8
Réseau 1 apps
An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 8 GB of RAM. This results in the u… |
|
CVE-2018-5089
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs were reported in Firefox 57 and Firefox ESR 52.5. Some of these bugs showed evidence of memory corruption and we presume that with enough ef… |
|
CVE-2017-7828
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been freed while still in use. This results in a… |
|
CVE-2017-7826
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs were reported in Firefox 56 and Firefox ESR 52.4. Some of these bugs showed evidence of memory corruption and we presume that with enough ef… |
|
CVE-2017-7824
CRITICAL 9.8
Réseau 1 apps
A buffer overflow occurs when drawing and validating elements with the ANGLE graphics library, used for WebGL content. This is due to an incorrect value being … |
|
CVE-2017-7819
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur in design mode when image objects are resized if objects referenced during the resizing have been freed from memory. T… |
|
CVE-2017-7818
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when manipulating arrays of Accessible Rich Internet Applications (ARIA) elements within containers through the DOM. T… |
|
CVE-2017-7810
CRITICAL 9.8
Réseau 1 apps
Memory safety bugs were reported in Firefox 55 and Firefox ESR 52.3. Some of these bugs showed evidence of memory corruption and we presume that with enough ef… |
|
CVE-2017-7809
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when an editor DOM node is deleted prematurely during tree traversal while still bound to the document. This results i… |
|
CVE-2017-7802
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur when manipulating the DOM during the resize event of an image element. If these elements have been freed due to a lack… |
|
CVE-2017-7801
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur while re-computing layout for a "marquee" element during window resizing where the updated style object is freed while… |
|
CVE-2017-7800
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur in WebSockets when the object holding the connection is freed before the disconnection operation is finished. This res… |
|
CVE-2017-7793
CRITICAL 9.8
Réseau 1 apps
A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potentially expl… |
|
CVE-2017-7792
CRITICAL 9.8
Réseau 1 apps
A buffer overflow will occur when viewing a certificate in the certificate manager if the certificate has an extremely long object identifier (OID). This resul… |