Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Mozilla Firefox ESR Multiple Vulnerabilities -01 May13 (Windows)

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

10.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

10 years ago

Modified

Modified

5 years ago

Summary

This host is installed with Mozilla Firefox ESR and is prone to multiple vulnerabilities.

Insight

Insight

- Unspecified vulnerabilities in the browser engine. - The Chrome Object Wrapper (COW) implementation does not prevent acquisition of chrome privileges. - 'nsDOMSVGZoomEvent::mPreviousScale' and 'nsDOMSVGZoomEvent::mNewScale' functions do not initialize data structures. - Errors in 'SelectionIterator::GetNextSegment', 'gfxSkipCharsIterator::SetOffsets' and '_cairo_xlib_surface_add_glyph' functions. - Use-after-free vulnerabilities in following functions, 'nsContentUtils::RemoveScriptBlocker', 'nsFrameList::FirstChild', and 'mozilla::plugins::child::_geturlnotify'.

Affected Software

Affected Software

Mozilla Firefox ESR version before 17.x before 17.0.6 on Windows

Solution

Solution

Upgrade to Mozilla Firefox ESR version 17.0.6 or later.