ALT-PU-2016-2049-1
Closed vulnerabilities
BDU:2021-04041
Уязвимость класса DOMSVGLength браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код
BDU:2021-04047
Уязвимость функции mozilla::nsTextNodeDirectionalityMap::RemoveElementFromMap браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, позволяющая нарушителю выполнить произвольный код
BDU:2021-04197
Уязвимость браузеров Mozilla Firefox, Firefox ESR и почтового клиента Thunderbird, существующая из-за недостаточной проверки входных данных, позволяющая нарушителю подделывать обновления надстроек
Modified: 2024-11-21
CVE-2016-2827
The mozilla::net::IsValidReferrerPolicy function in Mozilla Firefox before 49.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via a Content Security Policy (CSP) referrer directive with zero values.
Modified: 2024-11-21
CVE-2016-5256
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 49.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- 93052
- 93052
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1268034
- https://bugzilla.mozilla.org/show_bug.cgi?id=1268034
- https://bugzilla.mozilla.org/show_bug.cgi?id=1276413
- https://bugzilla.mozilla.org/show_bug.cgi?id=1276413
- https://bugzilla.mozilla.org/show_bug.cgi?id=1282746
- https://bugzilla.mozilla.org/show_bug.cgi?id=1282746
- https://bugzilla.mozilla.org/show_bug.cgi?id=1290244
- https://bugzilla.mozilla.org/show_bug.cgi?id=1290244
- https://bugzilla.mozilla.org/show_bug.cgi?id=1296078
- https://bugzilla.mozilla.org/show_bug.cgi?id=1296078
- https://bugzilla.mozilla.org/show_bug.cgi?id=1296087
- https://bugzilla.mozilla.org/show_bug.cgi?id=1296087
- https://bugzilla.mozilla.org/show_bug.cgi?id=1297099
- https://bugzilla.mozilla.org/show_bug.cgi?id=1297099
- GLSA-201701-15
- GLSA-201701-15
Modified: 2024-11-21
CVE-2016-5257
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4 and Thunderbird < 45.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
- RHSA-2016:1912
- RHSA-2016:1912
- RHSA-2016:1985
- RHSA-2016:1985
- DSA-3674
- DSA-3674
- DSA-3690
- DSA-3690
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1277213
- https://bugzilla.mozilla.org/show_bug.cgi?id=1277213
- https://bugzilla.mozilla.org/show_bug.cgi?id=1287204
- https://bugzilla.mozilla.org/show_bug.cgi?id=1287204
- https://bugzilla.mozilla.org/show_bug.cgi?id=1288555
- https://bugzilla.mozilla.org/show_bug.cgi?id=1288555
- https://bugzilla.mozilla.org/show_bug.cgi?id=1288588
- https://bugzilla.mozilla.org/show_bug.cgi?id=1288588
- https://bugzilla.mozilla.org/show_bug.cgi?id=1288780
- https://bugzilla.mozilla.org/show_bug.cgi?id=1288780
- https://bugzilla.mozilla.org/show_bug.cgi?id=1289280
- https://bugzilla.mozilla.org/show_bug.cgi?id=1289280
- https://bugzilla.mozilla.org/show_bug.cgi?id=1293347
- https://bugzilla.mozilla.org/show_bug.cgi?id=1293347
- https://bugzilla.mozilla.org/show_bug.cgi?id=1294095
- https://bugzilla.mozilla.org/show_bug.cgi?id=1294095
- https://bugzilla.mozilla.org/show_bug.cgi?id=1294407
- https://bugzilla.mozilla.org/show_bug.cgi?id=1294407
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5270
Heap-based buffer overflow in the nsCaseTransformTextRunFactory::TransformString function in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 allows remote attackers to cause a denial of service (boolean out-of-bounds write) or possibly have unspecified other impact via Unicode characters that are mishandled during text conversion.
- RHSA-2016:1912
- RHSA-2016:1912
- DSA-3674
- DSA-3674
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1291016
- https://bugzilla.mozilla.org/show_bug.cgi?id=1291016
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5271
The PropertyProvider::GetSpacingInternal function in Mozilla Firefox before 49.0 allows remote attackers to cause a denial of service (out-of-bounds read and application crash) via text runs in conjunction with a "display: contents" Cascading Style Sheets (CSS) property.
Modified: 2024-11-21
CVE-2016-5272
The nsImageGeometryMixin class in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 does not properly perform a cast of an unspecified variable during handling of INPUT elements, which allows remote attackers to execute arbitrary code via a crafted web site.
- RHSA-2016:1912
- RHSA-2016:1912
- DSA-3674
- DSA-3674
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1297934
- https://bugzilla.mozilla.org/show_bug.cgi?id=1297934
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5273
The mozilla::a11y::HyperTextAccessible::GetChildOffset function in the accessibility implementation in Mozilla Firefox before 49.0 allows remote attackers to execute arbitrary code via a crafted web site.
Modified: 2024-11-21
CVE-2016-5274
Use-after-free vulnerability in the nsFrameManager::CaptureFrameState function in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 allows remote attackers to execute arbitrary code by leveraging improper interaction between restyling and the Web Animations model implementation.
- RHSA-2016:1912
- RHSA-2016:1912
- DSA-3674
- DSA-3674
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1282076
- https://bugzilla.mozilla.org/show_bug.cgi?id=1282076
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5275
Buffer overflow in the mozilla::gfx::FilterSupport::ComputeSourceNeededRegions function in Mozilla Firefox before 49.0 allows remote attackers to execute arbitrary code by leveraging improper interaction between empty filters and CANVAS element rendering.
Modified: 2024-11-21
CVE-2016-5276
Use-after-free vulnerability in the mozilla::a11y::DocAccessible::ProcessInvalidationList function in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via an aria-owns attribute.
- RHSA-2016:1912
- RHSA-2016:1912
- DSA-3674
- DSA-3674
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1287721
- https://bugzilla.mozilla.org/show_bug.cgi?id=1287721
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5277
Use-after-free vulnerability in the nsRefreshDriver::Tick function in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by leveraging improper interaction between timeline destruction and the Web Animations model implementation.
- RHSA-2016:1912
- RHSA-2016:1912
- DSA-3674
- DSA-3674
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1291665
- https://bugzilla.mozilla.org/show_bug.cgi?id=1291665
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5278
Heap-based buffer overflow in the nsBMPEncoder::AddImageFrame function in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 allows remote attackers to execute arbitrary code via a crafted image data that is mishandled during the encoding of an image frame to an image.
- RHSA-2016:1912
- RHSA-2016:1912
- DSA-3674
- DSA-3674
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1294677
- https://bugzilla.mozilla.org/show_bug.cgi?id=1294677
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5279
Mozilla Firefox before 49.0 allows user-assisted remote attackers to obtain sensitive full-pathname information during a local-file drag-and-drop operation via crafted JavaScript code.
Modified: 2024-11-21
CVE-2016-5280
Use-after-free vulnerability in the mozilla::nsTextNodeDirectionalityMap::RemoveElementFromMap function in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 allows remote attackers to execute arbitrary code via bidirectional text.
- RHSA-2016:1912
- RHSA-2016:1912
- DSA-3674
- DSA-3674
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1289970
- https://bugzilla.mozilla.org/show_bug.cgi?id=1289970
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5281
Use-after-free vulnerability in the DOMSVGLength class in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 allows remote attackers to execute arbitrary code by leveraging improper interaction between JavaScript code and an SVG document.
- RHSA-2016:1912
- RHSA-2016:1912
- DSA-3674
- DSA-3674
- http://www.geeknik.net/7gr1u98b9
- http://www.geeknik.net/7gr1u98b9
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://bugzilla.mozilla.org/show_bug.cgi?id=1284690
- https://bugzilla.mozilla.org/show_bug.cgi?id=1284690
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
Modified: 2024-11-21
CVE-2016-5282
Mozilla Firefox before 49.0 does not properly restrict the scheme in favicon requests, which might allow remote attackers to obtain sensitive information via unspecified vectors, as demonstrated by a jar: URL for a favicon resource.
Modified: 2024-11-21
CVE-2016-5283
Mozilla Firefox before 49.0 allows remote attackers to bypass the Same Origin Policy via a crafted fragment identifier in the SRC attribute of an IFRAME element, leading to insufficient restrictions on link-color information after a document is resized.
Modified: 2024-11-21
CVE-2016-5284
Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 rely on unintended expiration dates for Preloaded Public Key Pinning, which allows man-in-the-middle attackers to spoof add-on updates by leveraging possession of an X.509 server certificate for addons.mozilla.org signed by an arbitrary built-in Certification Authority.
- RHSA-2016:1912
- RHSA-2016:1912
- [dailydave] 20160915 Deep down the certificate pinning rabbit hole of "Tor Browser Exposed"
- [dailydave] 20160915 Deep down the certificate pinning rabbit hole of "Tor Browser Exposed"
- DSA-3674
- DSA-3674
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.mozilla.org/security/announce/2016/mfsa2016-85.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- http://www.oracle.com/technetwork/topics/security/linuxbulletinoct2016-3090545.html
- 93049
- 93049
- 1036852
- 1036852
- https://blog.mozilla.org/security/2016/09/16/update-on-add-on-pinning-vulnerability/
- https://blog.mozilla.org/security/2016/09/16/update-on-add-on-pinning-vulnerability/
- https://bugzilla.mozilla.org/show_bug.cgi?id=1303127
- https://bugzilla.mozilla.org/show_bug.cgi?id=1303127
- https://hackernoon.com/tor-browser-exposed-anti-privacy-implantation-at-mass-scale-bd68e9eb1e95
- https://hackernoon.com/tor-browser-exposed-anti-privacy-implantation-at-mass-scale-bd68e9eb1e95
- GLSA-201701-15
- GLSA-201701-15
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-86/
- https://www.mozilla.org/security/advisories/mfsa2016-88/
- https://www.mozilla.org/security/advisories/mfsa2016-88/