Anfälligkeitssuche        Suche in 219043 CVE Beschreibungen
und 99761 Test Beschreibungen,
Zugriff auf 10,000+ Quellverweise.
Tests   CVE   Alle  

Test Kennung:1.3.6.1.4.1.25623.1.0.805251
Kategorie:General
Titel:Mozilla Firefox ESR Multiple Vulnerabilities-01 Jan15 (Mac OS X)
Zusammenfassung:This host is installed with Mozilla Firefox ESR; and is prone to multiple vulnerabilities.
Beschreibung:Summary:
This host is installed with Mozilla Firefox ESR
and is prone to multiple vulnerabilities.

Vulnerability Insight:
Multiple flaws exist due to:

- A use-after-free error when handling tracks within WebRTC.

- An error when handling a '407 Proxy Authentication' response with a
'Set-Cookie' header from a web proxy.

- Some unspecified errors.

- An error when handling a request from 'navigator.sendBeacon' API interface
function.

Vulnerability Impact:
Successful exploitation will allow remote
attackers to bypass certain security restrictions, and compromise a user's
system.

Affected Software/OS:
Mozilla Firefox ESR 31.x before 31.4 on
Mac OS X

Solution:
Upgrade to Mozilla Firefox ESR version 31.4
or later.

CVSS Score:
7.5

CVSS Vector:
AV:N/AC:L/Au:N/C:P/I:P/A:P

Querverweis: BugTraq ID: 72044
BugTraq ID: 72046
BugTraq ID: 72047
BugTraq ID: 72049
Common Vulnerability Exposure (CVE) ID: CVE-2014-8641
http://www.securityfocus.com/bid/72044
Debian Security Information: DSA-3127 (Google Search)
http://www.debian.org/security/2015/dsa-3127
https://security.gentoo.org/glsa/201504-01
RedHat Security Advisories: RHSA-2015:0046
http://rhn.redhat.com/errata/RHSA-2015-0046.html
http://www.securitytracker.com/id/1031533
http://secunia.com/advisories/62237
http://secunia.com/advisories/62242
http://secunia.com/advisories/62250
http://secunia.com/advisories/62253
http://secunia.com/advisories/62273
http://secunia.com/advisories/62293
http://secunia.com/advisories/62313
http://secunia.com/advisories/62316
http://secunia.com/advisories/62418
http://secunia.com/advisories/62446
http://secunia.com/advisories/62790
SuSE Security Announcement: SUSE-SU-2015:0171 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-01/msg00032.html
SuSE Security Announcement: SUSE-SU-2015:0173 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-01/msg00033.html
SuSE Security Announcement: SUSE-SU-2015:0180 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-01/msg00036.html
SuSE Security Announcement: openSUSE-SU-2015:0077 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-01/msg00014.html
SuSE Security Announcement: openSUSE-SU-2015:0192 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-02/msg00002.html
XForce ISS Database: firefox-cve20148641-dos(99961)
https://exchange.xforce.ibmcloud.com/vulnerabilities/99961
Common Vulnerability Exposure (CVE) ID: CVE-2014-8639
http://www.securityfocus.com/bid/72046
Debian Security Information: DSA-3132 (Google Search)
http://www.debian.org/security/2015/dsa-3132
RedHat Security Advisories: RHSA-2015:0047
http://rhn.redhat.com/errata/RHSA-2015-0047.html
http://www.securitytracker.com/id/1031534
http://secunia.com/advisories/62259
http://secunia.com/advisories/62274
http://secunia.com/advisories/62283
http://secunia.com/advisories/62304
http://secunia.com/advisories/62315
http://secunia.com/advisories/62657
SuSE Security Announcement: openSUSE-SU-2015:0133 (Google Search)
http://lists.opensuse.org/opensuse-updates/2015-01/msg00071.html
SuSE Security Announcement: openSUSE-SU-2015:1266 (Google Search)
http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.html
http://www.ubuntu.com/usn/USN-2460-1
XForce ISS Database: firefox-cve20148639-session-hijacking(99959)
https://exchange.xforce.ibmcloud.com/vulnerabilities/99959
Common Vulnerability Exposure (CVE) ID: CVE-2014-8638
http://www.securityfocus.com/bid/72047
XForce ISS Database: firefox-cve20148638-csrf(99958)
https://exchange.xforce.ibmcloud.com/vulnerabilities/99958
Common Vulnerability Exposure (CVE) ID: CVE-2014-8634
http://www.securityfocus.com/bid/72049
XForce ISS Database: firefox-cve20148634-code-exec(99955)
https://exchange.xforce.ibmcloud.com/vulnerabilities/99955
CopyrightCopyright (C) 2015 Greenbone Networks GmbH

Dies ist nur einer von 99761 Anfälligkeitstests in unserem Testpaket. Finden Sie mehr über unsere vollständigen Sicherheitsüberprüfungen heraus.

Um einen gratis Test für diese Anfälligkeit auf Ihrem System durchlaufen zu lassen, registrieren Sie sich bitte unten.




© 1998-2024 E-Soft Inc. Alle Rechte vorbehalten.