Free and open-source vulnerability scanner

Mageni eases for you the vulnerability scanning, assessment, and management process. It is free and open-source.

Install Now

Available for macOS, Windows, and Linux

App screenshot

Mozilla Firefox ESR Multiple Vulnerabilities-01 November12 (Mac OS X)

Information

Severity

Severity

Critical

Family

Family

General

CVSSv2 Base

CVSSv2 Base

10.0

CVSSv2 Vector

CVSSv2 Vector

AV:N/AC:L/Au:N/C:C/I:C/A:C

Solution Type

Solution Type

Vendor Patch

Created

Created

11 years ago

Modified

Modified

5 years ago

Summary

This host is installed with Mozilla Firefox ESR and is prone to multiple vulnerabilities.

Insight

Insight

- The 'location' property can be accessed through 'top.location' with a frame whose name attributes value is set to 'top'. - Use-after-free error exists within the functions 'nsTextEditorState::PrepareEditor', 'gfxFont::GetFontEntry', 'nsWindow::OnExposeEvent' and 'nsPlaintextEditor::FireClipboardEvent'. - An error within the 'evalInSandbox()' when handling the 'location.href' property. - Error when rendering GIF images.

Affected Software

Affected Software

Mozilla Firefox ESR version 10.x before 10.0.11 on Mac OS X

Solution

Solution

Upgrade to Mozilla Firefox ESR version 10.0.11 or later.