VYPR

rpm package

almalinux/firefox

pkg:rpm/almalinux/firefox

Vulnerabilities (590)

  • CVE-2022-22741HigDec 22, 2022
    affected < 91.5.0-1.el8_5.almafixed 91.5.0-1.el8_5.alma

    When resizing a popup while requesting fullscreen access, the popup would have become unable to leave fullscreen mode. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

  • CVE-2022-22740HigDec 22, 2022
    affected < 91.5.0-1.el8_5.almafixed 91.5.0-1.el8_5.alma

    Certain network request objects were freed too early when releasing a network request handle. This could have lead to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

  • CVE-2022-22739MedDec 22, 2022
    affected < 91.5.0-1.el8_5.almafixed 91.5.0-1.el8_5.alma

    Malicious websites could have tricked users into accepting launching a program to handle an external URL protocol. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

  • CVE-2022-22738HigDec 22, 2022
    affected < 91.5.0-1.el8_5.almafixed 91.5.0-1.el8_5.alma

    Applying a CSS filter effect could have accessed out of bounds memory. This could have lead to a heap-buffer-overflow causing a potentially exploitable crash. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

  • CVE-2022-22737HigDec 22, 2022
    affected < 91.5.0-1.el8_5.almafixed 91.5.0-1.el8_5.alma

    Constructing audio sinks could have lead to a race condition when playing audio files and closing windows. This could have lead to a use-after-free causing a potentially exploitable crash. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

  • CVE-2022-1802HigDec 22, 2022
    affected < 91.9.1-1.el8_6.almafixed 91.9.1-1.el8_6.alma

    If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollution, they could have achieved execution of attacker-controlled JavaScript code in a privileged context. This vulnerability affects Firefox ESR < 91.9.1, Firefox < 100.0.2, Firefox

  • CVE-2022-1529HigDec 22, 2022
    affected < 91.9.1-1.el8_6.almafixed 91.9.1-1.el8_6.alma

    An attacker could have sent a message to the parent process where the contents were used to double-index into a JavaScript object, leading to prototype pollution and ultimately attacker-controlled JavaScript executing in the privileged parent process. This vulnerability affects F

  • CVE-2022-1196MedDec 22, 2022
    affected < 91.8.0-1.el8_5.almafixed 91.8.0-1.el8_5.alma

    After a VR Process is destroyed, a reference to it may have been retained and used, leading to a use-after-free and potentially exploitable crash. This vulnerability affects Thunderbird < 91.8 and Firefox ESR < 91.8.

  • CVE-2022-1097MedDec 22, 2022
    affected < 91.8.0-1.el8_5.almafixed 91.8.0-1.el8_5.alma

    NSSToken objects were referenced via direct points, and could have been accessed in an unsafe way on different threads, leading to a use-after-free and potentially exploitable crash. This vulnerability affects Thunderbird < 91.8, Firefox < 99, and Firefox ESR < 91.8.

  • CVE-2021-4140CriDec 22, 2022
    affected < 91.5.0-1.el8_5.almafixed 91.5.0-1.el8_5.alma

    It was possible to construct specific XSLT markup that would be able to bypass an iframe sandbox. This vulnerability affects Firefox ESR < 91.5, Firefox < 96, and Thunderbird < 91.5.

  • CVE-2022-40674HigSep 14, 2022
    affected < 102.3.0-7.el9_0.almafixed 102.3.0-7.el9_0.alma

    libexpat before 2.4.9 has a use-after-free in the doContent function in xmlparse.c.

  • CVE-2022-24713HigMar 8, 2022
    affected < 91.8.0-1.el8_5.almafixed 91.8.0-1.el8_5.alma

    regex is an implementation of regular expressions for the Rust language. The regex crate features built-in mitigations to prevent denial of service attacks caused by untrusted regexes, or untrusted input matched by trusted regexes. Those (tunable) mitigations already provide sane

  • CVE-2022-25315CriFeb 18, 2022
    affected < 91.7.0-3.el8_5.almafixed 91.7.0-3.el8_5.alma

    In Expat (aka libexpat) before 2.4.5, there is an integer overflow in storeRawNames.

  • CVE-2022-25236CriFeb 16, 2022
    affected < 91.7.0-3.el8_5.almafixed 91.7.0-3.el8_5.alma

    xmlparse.c in Expat (aka libexpat) before 2.4.5 allows attackers to insert namespace-separator characters into namespace URIs.

  • CVE-2022-25235CriFeb 16, 2022
    affected < 91.7.0-3.el8_5.almafixed 91.7.0-3.el8_5.alma

    xmltok_impl.c in Expat (aka libexpat) before 2.4.5 lacks certain validation of encoding, such as checks for whether a UTF-8 character is valid in a certain context.

  • CVE-2021-43546MedDec 8, 2021
    affected < 91.4.0-1.el8_5.almafixed 91.4.0-1.el8_5.alma

    It was possible to recreate previous cursor spoofing attacks against users with a zoomed native cursor. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

  • CVE-2021-43545MedDec 8, 2021
    affected < 91.4.0-1.el8_5.almafixed 91.4.0-1.el8_5.alma

    Using the Location API in a loop could have caused severe application hangs and crashes. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

  • CVE-2021-43543MedDec 8, 2021
    affected < 91.4.0-1.el8_5.almafixed 91.4.0-1.el8_5.alma

    Documents loaded with the CSP sandbox directive could have escaped the sandbox's script restriction by embedding additional content. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

  • CVE-2021-43542MedDec 8, 2021
    affected < 91.4.0-1.el8_5.almafixed 91.4.0-1.el8_5.alma

    Using XMLHttpRequest, an attacker could have identified installed applications by probing error messages for loading external protocols. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

  • CVE-2021-43541MedDec 8, 2021
    affected < 91.4.0-1.el8_5.almafixed 91.4.0-1.el8_5.alma

    When invoking protocol handlers for external protocols, a supplied parameter URL containing spaces was not properly escaped. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.

Page 29 of 30