Aller au contenu
Appaloosa Scout

Vulnérabilités

Vulnérabilités des apps suivies

1 821 entrées

Tri chronologique : du plus récent au plus ancien. Pour prioriser, utilise les filtres KEV / sévérité ci-dessus.

CVE
CVE-2017-5441
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability when holding a selection during scroll events. This results in a potentially exploitable crash. This vulnerability affects Thund…

CVE-2017-5440
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability during XSLT processing due to a failure to propagate error conditions during matching while evaluating context, leading to objec…

CVE-2017-5439
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability during XSLT processing due to poor handling of template parameters. This results in a potentially exploitable crash. This vulner…

CVE-2017-5438
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during handling. This results in a potentially ex…

CVE-2017-5435
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability occurs during transaction processing in the editor during design mode interactions. This results in a potentially exploitable cr…

CVE-2017-5434
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability occurs when redirecting focus handling which results in a potentially exploitable crash. This vulnerability affects Thunderbird …

CVE-2017-5433
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability in SMIL animation functions occurs when pointers to animation elements in an array are dropped from the animation controller whi…

CVE-2017-5432
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability occurs during certain text input selection resulting in a potentially exploitable crash. This vulnerability affects Thunderbird …

CVE-2017-5430
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 52, Firefox ESR 52, and Thunderbird 52. Some of these bugs showed evidence of memory corruption and we presume that…

CVE-2017-5429
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 52, Firefox ESR 45.8, Firefox ESR 52, and Thunderbird 52. Some of these bugs showed evidence of memory corruption a…

CVE-2017-5413
CRITICAL 9.8 Réseau 1 apps

A segmentation fault can occur during some bidirectional layout operations. This vulnerability affects Firefox < 52 and Thunderbird < 52.

CVE-2017-5410
CRITICAL 9.8 Réseau 1 apps

Memory corruption resulting in a potentially exploitable crash during garbage collection of JavaScript due errors in how incremental sweeping is managed for me…

CVE-2017-5404
CRITICAL 9.8 Réseau 1 apps

A use-after-free error can occur when manipulating ranges in selections with one node inside a native anonymous tree and one node outside of it. This results i…

CVE-2017-5403
CRITICAL 9.8 Réseau 1 apps

When adding a range to an object in the DOM, it is possible to use "addRange" to add the range to an incorrect root object. This triggers a use-after-free, res…

CVE-2017-5402
CRITICAL 9.8 Réseau 1 apps

A use-after-free can occur when events are fired for a "FontFace" object after the object has been already been destroyed while working with fonts. This result…

CVE-2017-5401
CRITICAL 9.8 Réseau 1 apps

A crash triggerable by web content in which an "ErrorResult" references unassigned memory due to a logic error. The resulting crash may be exploitable. This vu…

CVE-2017-5400
CRITICAL 9.8 Réseau 1 apps

JIT-spray targeting asm.js combined with a heap spray allows for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vuln…

CVE-2017-5399
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 51. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of the…

CVE-2017-5398
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Thunderbird 45.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some …

CVE-2017-5396
CRITICAL 9.8 Réseau 1 apps

A use-after-free vulnerability in the Media Decoder when working with media files when some events are fired after the media elements are freed from memory. Th…

CVE-2017-5390
CRITICAL 9.8 Réseau 1 apps

The JSON viewer in the Developer Tools uses insecure methods to create a communication channel for copying and viewing JSON or HTTP headers data, allowing for …

CVE-2017-5380
CRITICAL 9.8 Réseau 1 apps

A potential use-after-free found through fuzzing during DOM manipulation of SVG content. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and…

CVE-2017-5376
CRITICAL 9.8 Réseau 1 apps

Use-after-free while manipulating XSL in XSLT documents. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51.

CVE-2017-5375
CRITICAL 9.8 Réseau 1 apps

JIT code allocation can allow for a bypass of ASLR and DEP protections leading to potential memory corruption attacks. This vulnerability affects Thunderbird <…

CVE-2017-5373
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 50.1 and Firefox ESR 45.6. Some of these bugs showed evidence of memory corruption and we presume that with enough …

CVE-2016-9899
CRITICAL 9.8 Réseau 1 apps

Use-after-free while manipulating DOM events and removing audio elements due to errors in the handling of node adoption. This vulnerability affects Firefox < 5…

CVE-2016-9898
CRITICAL 9.8 Réseau 1 apps

Use-after-free resulting in potentially exploitable crash when manipulating DOM subtrees in the Editor. This vulnerability affects Firefox < 50.1, Firefox ESR …

CVE-2016-9893
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Thunderbird 45.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some …

CVE-2016-9063
CRITICAL 9.8 Réseau 1 apps

An integer overflow during the parsing of XML using the Expat library. This vulnerability affects Firefox < 50.

CVE-2016-5297
CRITICAL 9.8 Réseau 1 apps

An error in argument length checking in JavaScript, leading to potential integer overflows or other bounds checking issues. This vulnerability affects Thunderb…

CVE-2016-5290
CRITICAL 9.8 Réseau 1 apps

Memory safety bugs were reported in Firefox 49 and Firefox ESR 45.4. Some of these bugs showed evidence of memory corruption and we presume that with enough ef…

CVE-2018-9373
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-9364
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-9357
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-9356
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-9355
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-9341
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-5854
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-3569
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2017-18158
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2017-18155
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-0961
CRITICAL 7.6

Hyper-V vSMB Remote Code Execution Vulnerability

CVE-2018-0959
CRITICAL 7.6

Windows Hyper-V Remote Code Execution Vulnerability

CVE-2018-3580
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-3565
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2017-6289
CRITICAL

Indexée via Android Security Bulletin ; métadonnées NVD complètes à venir.

CVE-2018-1016
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2018-1015
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2018-1013
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability

CVE-2018-1012
CRITICAL 8.8

Microsoft Graphics Remote Code Execution Vulnerability