Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Bas Schouten

#20360of 53,632
12.6Total CVSS
Vulnerabilities · 2
Low
1
Critical
1
PT-2020-3495
10
2020-05-05
Mozilla · Firefox · CVE-2020-12395
**Name of the Vulnerable Software and Affected Versions** Firefox ESR versions 68.7 through 68.7 Firefox versions 75 through 75 Thunderbird versions prior to 68.8.0 **Description** The issue is related to memory safety bugs, which can lead to memory corruption. With sufficient effort, these bugs could potentially be exploited to run arbitrary code. The vulnerability is also described as a buffer overflow in memory, which could allow a remote attacker to cause a denial of service. **Recommendations** For Firefox ESR version 68.7, update to version 68.8 or later. For Firefox version 75, update to version 76 or later. For Thunderbird versions prior to 68.8.0, update to version 68.8.0 or later.
PT-2011-4560
2.6
2011-11-08
Mozilla · Firefox · CVE-2011-3649
**Name of the Vulnerable Software and Affected Versions** Mozilla Firefox version 7.0 Thunderbird version 7.0 **Description** The issue allows remote attackers to bypass the Same Origin Policy and obtain sensitive image data from a different domain by inserting this data into a canvas when the Direct2D API is used on Windows in conjunction with the Azure graphics back-end. **Recommendations** For Mozilla Firefox version 7.0, update to a version that includes a fix for this regression issue. For Thunderbird version 7.0, update to a version that includes a fix for this regression issue.