Mozilla Firefox For Android vulnerabilities
33 known vulnerabilities affecting mozilla/firefox_for_android.
Total CVEs
33
CISA KEV
2
actively exploited
Public exploits
2
Exploited in wild
4
Severity breakdown
CRITICAL2HIGH13MEDIUM17LOW1
Vulnerabilities
Page 1 of 2
CVE-2022-26485P1HIGHCVSS 8.8KEVPoC≥ unspecified, < 97.3.02022-12-22
CVE-2022-26485 [HIGH] CWE-416 CVE-2022-26485: Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We ha
Removing an XSLT parameter during processing could have lead to an exploitable use-after-free. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.
nvd
CVE-2022-26486P1CRITICALCVSS 9.6KEV≥ unspecified, < 97.3.02022-12-22
CVE-2022-26486 [CRITICAL] CWE-416 CVE-2022-26486: An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable san
An unexpected message in the WebGPU IPC framework could lead to a use-after-free and exploitable sandbox escape. We have had reports of attacks in the wild abusing this flaw. This vulnerability affects Firefox < 97.0.2, Firefox ESR < 91.6.1, Firefox for Android < 97.3.0, Thunderbird < 91.6.2, and Focus < 97.3.0.
nvd
CVE-2022-1802P1HIGHCVSS 8.8ExploitedPoC≥ unspecified, < 100.3.02022-12-22
CVE-2022-1802 [HIGH] CWE-1321 CVE-2022-1802: If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollut
If an attacker was able to corrupt the methods of an Array object in JavaScript via prototype pollution, they could have achieved execution of attacker-controlled JavaScript code in a privileged context. This vulnerability affects Firefox ESR < 91.9.1, Firefox < 100.0.2, Firefox for Android < 100.3.0, and Thunderbird < 91.9.1.
nvd
CVE-2022-1529P2HIGHCVSS 8.8Exploited≥ unspecified, < 100.3.02022-12-22
CVE-2022-1529 [HIGH] CWE-1321 CVE-2022-1529: An attacker could have sent a message to the parent process where the contents were used to double-i
An attacker could have sent a message to the parent process where the contents were used to double-index into a JavaScript object, leading to prototype pollution and ultimately attacker-controlled JavaScript executing in the privileged parent process. This vulnerability affects Firefox ESR < 91.9.1, Firefox < 100.0.2, Firefox for Android < 100.3.0, and
nvd
CVE-2023-29541P3HIGHCVSS 8.8≥ unspecified, < 1122023-06-02
CVE-2023-29541 [HIGH] CWE-116 CVE-2023-29541: Firefox did not properly handle downloads of files ending in <code>.desktop</code>, which can be int
Firefox did not properly handle downloads of files ending in .desktop, which can be interpreted to run attacker-controlled commands. *This bug only affects Firefox for Linux on certain Distributions. Other operating systems are unaffected, and Mozilla is unable to enumerate all affected Linux Distributions.*. This vulnerability affects Firefox < 112,
nvd
CVE-2023-29534P3CRITICALCVSS 9.1≥ unspecified, < 1122023-06-19
CVE-2023-29534 [CRITICAL] CVE-2023-29534: Different techniques existed to obscure the fullscreen notification in Firefox and Focus for Android
Different techniques existed to obscure the fullscreen notification in Firefox and Focus for Android. These could have led to potential user confusion and spoofing attacks.
*This bug only affects Firefox and Focus for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox for Android < 112 and Focus for Android < 112.
nvd
CVE-2023-29550P3HIGHCVSS 8.8≥ unspecified, < 1122023-06-02
CVE-2023-29550 [HIGH] CVE-2023-29550: Memory safety bugs present in Firefox 111 and Firefox ESR 102.9. Some of these bugs showed evidence
Memory safety bugs present in Firefox 111 and Firefox ESR 102.9. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.1
nvd
CVE-2023-29536P3HIGHCVSS 8.8≥ unspecified, < 1122023-06-02
CVE-2023-29536 [HIGH] CWE-416 CVE-2023-29536: An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-con
An attacker could cause the memory manager to incorrectly free a pointer that addresses attacker-controlled memory, resulting in an assertion, memory corruption, or a potentially exploitable crash. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.
nvd
CVE-2023-29551P3HIGHCVSS 8.8≥ unspecified, < 1122023-06-02
CVE-2023-29551 [HIGH] CWE-787 CVE-2023-29551: Memory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption a
Memory safety bugs present in Firefox 111. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.
nvd
CVE-2020-15670P3HIGHCVSS 8.8≥ unspecified, < 802020-10-01
CVE-2020-15670 [HIGH] CWE-362 CVE-2020-15670: Mozilla developers reported memory safety bugs present in Firefox for Android 79. Some of these bugs
Mozilla developers reported memory safety bugs present in Firefox for Android 79. Some of these bugs showed evidence of memory corruption and we presume that with enough effort some of these could have been exploited to run arbitrary code. This vulnerability affects Firefox < 80, Firefox ESR < 78.2, Thunderbird < 78.2, and Firefox for Android < 80.
nvd
CVE-2023-29539P3HIGHCVSS 8.8≥ unspecified, < 1122023-06-02
CVE-2023-29539 [HIGH] CWE-476 CVE-2023-29539: When handling the filename directive in the Content-Disposition header, the filename would be trunca
When handling the filename directive in the Content-Disposition header, the filename would be truncated if the filename contained a NULL character. This could have led to reflected file download attacks potentially tricking users to install malware. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for An
nvd
CVE-2023-29543P3HIGHCVSS 8.8≥ unspecified, < 1122023-06-02
CVE-2023-29543 [HIGH] CWE-416 CVE-2023-29543: An attacker could have caused memory corruption and a potentially exploitable use-after-free of a po
An attacker could have caused memory corruption and a potentially exploitable use-after-free of a pointer in a global object's debugger vector. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.
nvd
CVE-2021-29952P3HIGHCVSS 7.5≥ unspecified, < 88.1.32021-06-24
CVE-2021-29952 [HIGH] CWE-362 CVE-2021-29952: When Web Render components were destructed, a race condition could have caused undefined behavior, a
When Web Render components were destructed, a race condition could have caused undefined behavior, and we presume that with enough effort may have been exploitable to run arbitrary code. This vulnerability affects Firefox < 88.0.1 and Firefox for Android < 88.1.3.
nvd
CVE-2023-25747P3HIGHCVSS 7.5≥ unspecified, < 110.1.02023-06-19
CVE-2023-25747 [HIGH] CWE-416 CVE-2023-25747: A potential use-after-free in libaudio was fixed by disabling the AAudio backend when running on And
A potential use-after-free in libaudio was fixed by disabling the AAudio backend when running on Android API below version 30.
*This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* This vulnerability affects Firefox for Android < 110.1.0.
nvd
CVE-2023-29537P3HIGHCVSS 7.5≥ unspecified, < 1122023-06-02
CVE-2023-29537 [HIGH] CWE-362 CVE-2023-29537: Multiple race conditions in the font initialization could have led to memory corruption and executio
Multiple race conditions in the font initialization could have led to memory corruption and execution of attacker-controlled code. This vulnerability affects Firefox for Android < 112, Firefox < 112, and Focus for Android < 112.
nvd
CVE-2024-8897P4MEDIUMCVSS 6.1≥ unspecified, < 130.0.12024-09-17
CVE-2024-8897 [MEDIUM] CWE-601 CVE-2024-8897: Under certain conditions, an attacker with the ability to redirect users to a malicious site via an
Under certain conditions, an attacker with the ability to redirect users to a malicious site via an open redirect on a trusted site, may be able to spoof the address bar contents. This can lead to a malicious site to appear to have the same URL as the trusted site.
*This bug only affects Firefox for Android. Other versions of Firefox are unaffected.* T
nvd
CVE-2020-15664P4MEDIUMCVSS 6.5≥ unspecified, < 802020-10-01
CVE-2020-15664 [MEDIUM] CWE-863 CVE-2020-15664: By holding a reference to the eval() function from an about:blank window, a malicious webpage could
By holding a reference to the eval() function from an about:blank window, a malicious webpage could have gained access to the InstallTrigger object which would allow them to prompt the user to install an extension. Combined with user confusion, this could result in an unintended or malicious extension being installed. This vulnerability affects Firef
nvd
CVE-2023-29548P4MEDIUMCVSS 6.5≥ unspecified, < 1122023-06-02
CVE-2023-29548 [MEDIUM] CVE-2023-29548: A wrong lowering instruction in the ARM64 Ion compiler resulted in a wrong optimization result. This
A wrong lowering instruction in the ARM64 Ion compiler resulted in a wrong optimization result. This vulnerability affects Firefox < 112, Focus for Android < 112, Firefox ESR < 102.10, Firefox for Android < 112, and Thunderbird < 102.10.
nvd
CVE-2020-15666P4MEDIUMCVSS 6.5≥ unspecified, < 802020-10-01
CVE-2020-15666 [MEDIUM] CWE-209 CVE-2020-15666: When trying to load a non-video in an audio/video context the exact status code (200, 302, 404, 500,
When trying to load a non-video in an audio/video context the exact status code (200, 302, 404, 500, 412, 403, etc.) was disclosed via the MediaError Message. This level of information leakage is inconsistent with the standardized onerror/onsuccess disclosure and can lead to inferring login status to services or device discovery on a local network a
nvd
CVE-2023-29546P4MEDIUMCVSS 6.5≥ unspecified, < 1122023-06-19
CVE-2023-29546 [MEDIUM] CVE-2023-29546: When recording the screen while in Private Browsing on Firefox for Android the address bar and keybo
When recording the screen while in Private Browsing on Firefox for Android the address bar and keyboard were not hidden, potentially leaking sensitive information.
*This bug only affects Firefox for Android. Other operating systems are unaffected.* This vulnerability affects Firefox for Android < 112 and Focus for Android < 112.
nvd
1 / 2Next →