cbcvebase.

Debian Firefox vulnerabilities

1,550 known vulnerabilities affecting debian/firefox.

Total CVEs
1,550
CISA KEV
11
actively exploited
Public exploits
39
Exploited in wild
20
Severity breakdown
CRITICAL333HIGH633MEDIUM542LOW42

Vulnerabilities

Page 10 of 78
CVE-2025-14328P3HIGHCVSS 8.8fixed in firefox 146.0-1 (sid)2025
CVE-2025-14328 [HIGH] CVE-2025-14328: firefox - Privilege escalation in the Netmonitor component. This vulnerability affects Fir... Privilege escalation in the Netmonitor component. This vulnerability affects Firefox < 146, Firefox ESR < 140.6, Thunderbird < 146, and Thunderbird < 140.6. Scope: local sid: resolved (fixed in 146.0-1)
debian
CVE-2017-5390P3CRITICALCVSS 9.8fixed in firefox 51.0-1 (sid)2017
CVE-2017-5390 [CRITICAL] CVE-2017-5390: firefox - The JSON viewer in the Developer Tools uses insecure methods to create a communi... The JSON viewer in the Developer Tools uses insecure methods to create a communication channel for copying and viewing JSON or HTTP headers data, allowing for potential privilege escalation. This vulnerability affects Thunderbird < 45.7, Firefox ESR < 45.7, and Firefox < 51. Scope: local sid: resolved (fixed in 51.0-1)
debian
CVE-2025-10537P3HIGHCVSS 8.8fixed in firefox 143.0-1 (sid)2025
CVE-2025-10537 [HIGH] CVE-2025-10537: firefox - Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox ... Memory safety bugs present in Firefox ESR 140.2, Thunderbird ESR 140.2, Firefox 142 and Thunderbird 142. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 143, Firefox ESR < 140.3, Thunderbird < 143, and Thunderbird < 140.3
debian
CVE-2026-3847P3HIGHCVSS 8.8fixed in firefox 148.0.2-1 (sid)2026
CVE-2026-3847 [HIGH] CVE-2026-3847: firefox - Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidenc... Memory safety bugs present in Firefox 148.0.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 148.0.2. Scope: local sid: resolved (fixed in 148.0.2-1)
debian
CVE-2025-11715P3HIGHCVSS 8.8fixed in firefox 144.0-1 (sid)2025
CVE-2025-11715 [HIGH] CVE-2025-11715: firefox - Memory safety bugs present in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox ... Memory safety bugs present in Firefox ESR 140.3, Thunderbird ESR 140.3, Firefox 143 and Thunderbird 143. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 144, Firefox ESR < 140.4, Thunderbird < 144, and Thunderbird < 140.4
debian
CVE-2025-14861P3HIGHCVSS 8.8fixed in firefox 146.0.1-1 (sid)2025
CVE-2025-14861 [HIGH] CVE-2025-14861: firefox - Memory safety bugs present in Firefox 146. Some of these bugs showed evidence of... Memory safety bugs present in Firefox 146. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 146.0.1. Scope: local sid: resolved (fixed in 146.0.1-1)
debian
CVE-2018-18492P3CRITICALCVSS 9.8fixed in firefox 64.0-1 (sid)2018
CVE-2018-18492 [CRITICAL] CVE-2018-18492: firefox - A use-after-free vulnerability can occur after deleting a selection element due ... A use-after-free vulnerability can occur after deleting a selection element due to a weak reference to the select element in the options collection. This results in a potentially exploitable crash. This vulnerability affects Thunderbird < 60.4, Firefox ESR < 60.4, and Firefox < 64. Scope: local sid: resolved (fixed in 64.0-1)
debian
CVE-2016-9901P3CRITICALCVSS 9.8fixed in firefox 50.1.0-1 (sid)2016
CVE-2016-9901 [CRITICAL] CVE-2016-9901: firefox - HTML tags received from the Pocket server will be processed without sanitization... HTML tags received from the Pocket server will be processed without sanitization and any JavaScript code executed will be run in the "about:pocket-saved" (unprivileged) page, giving it access to Pocket's messaging API through HTML injection. This vulnerability affects Firefox ESR < 45.6 and Firefox < 50.1. Scope: local sid: resolved (fixed in 50.1.0-1)
debian
CVE-2024-2607P3HIGHCVSS 8.1fixed in firefox 124.0-1 (sid)2024
CVE-2024-2607 [HIGH] CVE-2024-2607: firefox - Return registers were overwritten which could have allowed an attacker to execut... Return registers were overwritten which could have allowed an attacker to execute arbitrary code. *Note:* This issue only affected Armv7-A systems. Other operating systems are unaffected. This vulnerability affects Firefox < 124, Firefox ESR < 115.9, and Thunderbird < 115.9. Scope: local sid: resolved (fixed in 124.0-1)
debian
CVE-2025-9185P3HIGHCVSS 8.1fixed in firefox 142.0-1 (sid)2025
CVE-2025-9185 [HIGH] CVE-2025-9185: firefox - Memory safety bugs present in Firefox ESR 115.26, Firefox ESR 128.13, Thunderbir... Memory safety bugs present in Firefox ESR 115.26, Firefox ESR 128.13, Thunderbird ESR 128.13, Firefox ESR 140.1, Thunderbird ESR 140.1, Firefox 141 and Thunderbird 141. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 142, F
debian
CVE-2016-9075P3CRITICALCVSS 9.8fixed in firefox 50.0-1 (sid)2016
CVE-2016-9075 [CRITICAL] CVE-2016-9075: firefox - An issue where WebExtensions can use the mozAddonManager API to elevate privileg... An issue where WebExtensions can use the mozAddonManager API to elevate privilege due to privileged pages being allowed in the permissions list. This allows a malicious extension to then install additional extensions without explicit user permission. This vulnerability affects Firefox < 50. Scope: local sid: resolved (fixed in 50.0-1)
debian
CVE-2016-2838P3HIGHCVSS 8.8fixed in firefox 48.0-1 (sid)2016
CVE-2016-2838 [HIGH] CVE-2016-2838: firefox - Heap-based buffer overflow in the nsBidi::BracketData::AddOpening function in Mo... Heap-based buffer overflow in the nsBidi::BracketData::AddOpening function in Mozilla Firefox before 48.0 and Firefox ESR 45.x before 45.3 allows remote attackers to execute arbitrary code via directional content in an SVG document. Scope: local sid: resolved (fixed in 48.0-1)
debian
CVE-2017-7828P3CRITICALCVSS 9.8fixed in firefox 57.0-1 (sid)2017
CVE-2017-7828 [CRITICAL] CVE-2017-7828: firefox - A use-after-free vulnerability can occur when flushing and resizing layout becau... A use-after-free vulnerability can occur when flushing and resizing layout because the "PressShell" object has been freed while still in use. This results in a potentially exploitable crash during these operations. This vulnerability affects Firefox < 57, Firefox ESR < 52.5, and Thunderbird < 52.5. Scope: local sid: resolved (fixed in 57.0-1)
debian
CVE-2020-26972P3CRITICALCVSS 9.8fixed in firefox 84.0-1 (sid)2020
CVE-2020-26972 [CRITICAL] CVE-2020-26972: firefox - The lifecycle of IPC Actors allows managed actors to outlive their manager actor... The lifecycle of IPC Actors allows managed actors to outlive their manager actors; and the former must ensure that they are not attempting to use a dead actor they have a reference to. Such a check was omitted in WebGL, resulting in a use-after-free and a potentially exploitable crash. This vulnerability affects Firefox < 84. Scope: local sid: resolved (fixed in
debian
CVE-2023-5175P3CRITICALCVSS 9.8fixed in firefox 118.0-1 (sid)2023
CVE-2023-5175 [CRITICAL] CVE-2023-5175: firefox - During process shutdown, it was possible that an `ImageBitmap` was created that ... During process shutdown, it was possible that an `ImageBitmap` was created that would later be used after being freed from a different codepath, leading to a potentially exploitable crash. This vulnerability affects Firefox < 118. Scope: local sid: resolved (fixed in 118.0-1)
debian
CVE-2018-18356P3HIGHCVSS 8.8fixed in chromium 71.0.3578.80-1 (bookworm)2018
CVE-2018-18356 [HIGH] CVE-2018-18356: chromium - An integer overflow in path handling lead to a use after free in Skia in Google ... An integer overflow in path handling lead to a use after free in Skia in Google Chrome prior to 71.0.3578.80 allowed a remote attacker to potentially exploit heap corruption via a crafted HTML page. Scope: local bookworm: resolved (fixed in 71.0.3578.80-1) bullseye: resolved (fixed in 71.0.3578.80-1) forky: resolved (fixed in 71.0.3578.80-1) sid: resolved (fixed in
debian
CVE-2024-9394P3HIGHCVSS 7.5fixed in firefox 131.0-1 (sid)2024
CVE-2024-9394 [HIGH] CVE-2024-9394: firefox - An attacker could, via a specially crafted multipart response, execute arbitrary... An attacker could, via a specially crafted multipart response, execute arbitrary JavaScript under the `resource://devtools` origin. This could allow them to access cross-origin JSON content. This access is limited to "same site" documents by the Site Isolation feature on desktop clients, but full cross-origin access is possible on Android versions. This vulnerability
debian
CVE-2024-9401P3CRITICALCVSS 9.8fixed in firefox 131.0-1 (sid)2024
CVE-2024-9401 [CRITICAL] CVE-2024-9401: firefox - Memory safety bugs present in Firefox 130, Firefox ESR 115.15, Firefox ESR 128.2... Memory safety bugs present in Firefox 130, Firefox ESR 115.15, Firefox ESR 128.2, and Thunderbird 128.2. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 131, Firefox ESR < 128.3, Firefox ESR < 115.16, Thunderbird < 128.
debian
CVE-2025-1017P3CRITICALCVSS 9.8fixed in firefox 135.0-1 (sid)2025
CVE-2025-1017 [CRITICAL] CVE-2025-1017: firefox - Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, a... Memory safety bugs present in Firefox 134, Thunderbird 134, Firefox ESR 128.6, and Thunderbird 128.6. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 135, Firefox ESR < 128.7, Thunderbird < 128.7, and Thunderbird < 135.
debian
CVE-2024-4764P3CRITICALCVSS 9.8fixed in firefox 126.0-1 (sid)2024
CVE-2024-4764 [CRITICAL] CVE-2024-4764: firefox - Multiple WebRTC threads could have claimed a newly connected audio input leading... Multiple WebRTC threads could have claimed a newly connected audio input leading to use-after-free. This vulnerability affects Firefox < 126. Scope: local sid: resolved (fixed in 126.0-1)
debian
Debian Firefox vulnerabilities | cvebase