Debian Firefox-Esr vulnerabilities
965 known vulnerabilities affecting debian/firefox-esr.
Total CVEs
965
CISA KEV
11
actively exploited
Public exploits
28
Exploited in wild
16
Severity breakdown
CRITICAL236HIGH418MEDIUM292LOW19
Vulnerabilities
Page 16 of 49
CVE-2017-5438P3CRITICALCVSS 9.8fixed in firefox 52.0.1-1 (sid)2017
CVE-2017-5438 [CRITICAL] CVE-2017-5438: firefox - A use-after-free vulnerability during XSLT processing due to the result handler ...
A use-after-free vulnerability during XSLT processing due to the result handler being held by a freed handler during handling. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.
Scope: local
sid: resolved (fixed in 52.0.1-1)
debian
CVE-2017-7818P3CRITICALCVSS 9.8fixed in firefox 56.0-1 (sid)2017
CVE-2017-7818 [CRITICAL] CVE-2017-7818: firefox - A use-after-free vulnerability can occur when manipulating arrays of Accessible ...
A use-after-free vulnerability can occur when manipulating arrays of Accessible Rich Internet Applications (ARIA) elements within containers through the DOM. This results in a potentially exploitable crash. This vulnerability affects Firefox < 56, Firefox ESR < 52.4, and Thunderbird < 52.4.
Scope: local
sid: resolved (fixed in 56.0-1)
debian
CVE-2018-5091P3CRITICALCVSS 9.8fixed in firefox 58.0-1 (sid)2018
CVE-2018-5091 [CRITICAL] CVE-2018-5091: firefox - A use-after-free vulnerability can occur during WebRTC connections when interact...
A use-after-free vulnerability can occur during WebRTC connections when interacting with the DTMF timers. This results in a potentially exploitable crash. This vulnerability affects Firefox ESR < 52.6 and Firefox < 58.
Scope: local
sid: resolved (fixed in 58.0-1)
debian
CVE-2017-5443P3CRITICALCVSS 9.8fixed in firefox 52.0.1-1 (sid)2017
CVE-2017-5443 [CRITICAL] CVE-2017-5443: firefox - An out-of-bounds write vulnerability while decoding improperly formed BinHex for...
An out-of-bounds write vulnerability while decoding improperly formed BinHex format archives. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.1, and Firefox < 53.
Scope: local
sid: resolved (fixed in 52.0.1-1)
debian
CVE-2020-15683P3CRITICALCVSS 9.8fixed in firefox 82.0-1 (sid)2020
CVE-2020-15683 [CRITICAL] CVE-2020-15683: firefox - Mozilla developers and community members reported memory safety bugs present in ...
Mozilla developers and community members reported memory safety bugs present in Firefox 81 and Firefox ESR 78.3. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox ESR < 78.4, Firefox < 82, and Thunderbird < 78.4.
Scope: l
debian
CVE-2016-2799P3HIGHCVSS 8.8fixed in firefox 45.0-1 (sid)2016
CVE-2016-2799 [HIGH] CVE-2016-2799: firefox - Heap-based buffer overflow in the graphite2::Slot::setAttr function in Graphite ...
Heap-based buffer overflow in the graphite2::Slot::setAttr function in Graphite 2 before 1.3.6, as used in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7, allows remote attackers to cause a denial of service or possibly have unspecified other impact via a crafted Graphite smart font.
Scope: local
sid: resolved (fixed in 45.0-1)
debian
CVE-2018-12359P3HIGHCVSS 8.8fixed in firefox 61.0-1 (sid)2018
CVE-2018-12359 [HIGH] CVE-2018-12359: firefox - A buffer overflow can occur when rendering canvas content while adjusting the he...
A buffer overflow can occur when rendering canvas content while adjusting the height and width of the canvas element dynamically, causing data to be written outside of the currently computed boundaries. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60, Thunderbird < 52.9, Firefox ESR < 60.1, Firefox ESR < 52.9, and Firefox
debian
CVE-2016-5261P3HIGHCVSS 8.8fixed in firefox 48.0-1 (sid)2016
CVE-2016-5261 [HIGH] CVE-2016-5261: firefox - Integer overflow in the WebSocketChannel class in the WebSockets subsystem in Mo...
Integer overflow in the WebSocketChannel class in the WebSockets subsystem in Mozilla Firefox before 48.0 and Firefox ESR < 45.4 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via crafted packets that trigger incorrect buffer-resize operations during buffering.
Scope: local
sid: resolved (fixed in 48.0-1)
debian
CVE-2024-43097P3HIGHCVSS 7.8fixed in firefox-esr 128.8.0esr-1~deb12u1 (bookworm)2024
CVE-2024-43097 [HIGH] CVE-2024-43097: firefox-esr - In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due ...
In resizeToAtLeast of SkRegion.cpp, there is a possible out of bounds write due to an integer overflow. This could lead to local escalation of privilege with no additional execution privileges needed. User interaction is not needed for exploitation.
Scope: local
bookworm: resolved (fixed in 128.8.0esr-1~deb12u1)
bullseye: resolved (fixed in 128.8.0esr-1~deb11u1)
debian
CVE-2018-5178P3HIGHCVSS 8.1fixed in firefox-esr 52.8.0esr-1 (bookworm)2018
CVE-2018-5178 [HIGH] CVE-2018-5178: firefox-esr - A buffer overflow was found during UTF8 to Unicode string conversion within Java...
A buffer overflow was found during UTF8 to Unicode string conversion within JavaScript with extremely large amounts of data. This vulnerability requires the use of a malicious or vulnerable legacy extension in order to occur. This vulnerability affects Thunderbird ESR < 52.8, Thunderbird < 52.8, and Firefox ESR < 52.8.
Scope: local
bookworm: resolved (fixed in 52.
debian
CVE-2016-1961P3HIGHCVSS 8.8fixed in firefox 45.0-1 (sid)2016
CVE-2016-1961 [HIGH] CVE-2016-1961: firefox - Use-after-free vulnerability in the nsHTMLDocument::SetBody function in dom/html...
Use-after-free vulnerability in the nsHTMLDocument::SetBody function in dom/html/nsHTMLDocument.cpp in Mozilla Firefox before 45.0 and Firefox ESR 38.x before 38.7 allows remote attackers to execute arbitrary code by leveraging mishandling of a root element, aka ZDI-CAN-3574.
Scope: local
sid: resolved (fixed in 45.0-1)
debian
CVE-2018-5129P3HIGHCVSS 8.6fixed in firefox 59.0-1 (sid)2018
CVE-2018-5129 [HIGH] CVE-2018-5129: firefox - A lack of parameter validation on IPC messages results in a potential out-of-bou...
A lack of parameter validation on IPC messages results in a potential out-of-bounds write through malformed IPC messages. This can potentially allow for sandbox escape through memory corruption in the parent process. This vulnerability affects Thunderbird < 52.7, Firefox ESR < 52.7, and Firefox < 59.
Scope: local
sid: resolved (fixed in 59.0-1)
debian
CVE-2016-5272P3HIGHCVSS 8.8fixed in firefox 49.0-1 (sid)2016
CVE-2016-5272 [HIGH] CVE-2016-5272: firefox - The nsImageGeometryMixin class in Mozilla Firefox before 49.0, Firefox ESR 45.x ...
The nsImageGeometryMixin class in Mozilla Firefox before 49.0, Firefox ESR 45.x before 45.4, and Thunderbird < 45.4 does not properly perform a cast of an unspecified variable during handling of INPUT elements, which allows remote attackers to execute arbitrary code via a crafted web site.
Scope: local
sid: resolved (fixed in 49.0-1)
debian
CVE-2016-9078P3HIGHCVSS 8.8fixed in firefox 50.0.2-1 (sid)2016
CVE-2016-9078 [HIGH] CVE-2016-9078: firefox - Redirection from an HTTP connection to a "data:" URL assigns the referring site'...
Redirection from an HTTP connection to a "data:" URL assigns the referring site's origin to the "data:" URL in some circumstances. This can result in same-origin violations against a domain if it loads resources from malicious sites. Cross-origin setting of cookies has been demonstrated without the ability to read them. Note: This issue only affects Firefox 49 and 50.
debian
CVE-2019-17008P3HIGHCVSS 8.8fixed in firefox 71.0-1 (sid)2019
CVE-2019-17008 [HIGH] CVE-2019-17008: firefox - When using nested workers, a use-after-free could occur during worker destructio...
When using nested workers, a use-after-free could occur during worker destruction. This resulted in a potentially exploitable crash. This vulnerability affects Thunderbird < 68.3, Firefox ESR < 68.3, and Firefox < 71.
Scope: local
sid: resolved (fixed in 71.0-1)
debian
CVE-2021-43539P3HIGHCVSS 8.8fixed in firefox 95.0-1 (sid)2021
CVE-2021-43539 [HIGH] CVE-2021-43539: firefox - Failure to correctly record the location of live pointers across wasm instance c...
Failure to correctly record the location of live pointers across wasm instance calls resulted in a GC occurring within the call not tracing those live pointers. This could have led to a use-after-free causing a potentially exploitable crash. This vulnerability affects Thunderbird < 91.4.0, Firefox ESR < 91.4.0, and Firefox < 95.
Scope: local
sid: resolved (fixed in
debian
CVE-2021-23978P3HIGHCVSS 8.8fixed in firefox 86.0-1 (sid)2021
CVE-2021-23978 [HIGH] CVE-2021-23978: firefox - Mozilla developers reported memory safety bugs present in Firefox 85 and Firefox...
Mozilla developers reported memory safety bugs present in Firefox 85 and Firefox ESR 78.7. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 86, Thunderbird < 78.8, and Firefox ESR < 78.8.
Scope: local
sid: resolved (fixed
debian
CVE-2020-26968P3HIGHCVSS 8.8fixed in firefox 83.0-1 (sid)2020
CVE-2020-26968 [HIGH] CVE-2020-26968: firefox - Mozilla developers reported memory safety bugs present in Firefox 82 and Firefox...
Mozilla developers reported memory safety bugs present in Firefox 82 and Firefox ESR 78.4. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 83, Firefox ESR < 78.5, and Thunderbird < 78.5.
Scope: local
sid: resolved (fixed
debian
CVE-2020-26974P3HIGHCVSS 8.8fixed in firefox 84.0-1 (sid)2020
CVE-2020-26974 [HIGH] CVE-2020-26974: firefox - When flex-basis was used on a table wrapper, a StyleGenericFlexBasis object coul...
When flex-basis was used on a table wrapper, a StyleGenericFlexBasis object could have been incorrectly cast to the wrong type. This resulted in a heap user-after-free, memory corruption, and a potentially exploitable crash. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
Scope: local
sid: resolved (fixed in 84.0-1)
debian
CVE-2020-35113P3HIGHCVSS 8.8fixed in firefox 84.0-1 (sid)2020
CVE-2020-35113 [HIGH] CVE-2020-35113: firefox - Mozilla developers reported memory safety bugs present in Firefox 83 and Firefox...
Mozilla developers reported memory safety bugs present in Firefox 83 and Firefox ESR 78.5. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 84, Thunderbird < 78.6, and Firefox ESR < 78.6.
Scope: local
sid: resolved (fixed
debian