Vulnerabilities > Mozilla > Firefox > 33.0.3

DATE CVE VULNERABILITY TITLE RISK
2015-01-14 CVE-2014-8636 Code Injection vulnerability in Mozilla Firefox and Seamonkey
The XrayWrapper implementation in Mozilla Firefox before 35.0 and SeaMonkey before 2.32 does not properly interact with a DOM object that has a named getter, which might allow remote attackers to execute arbitrary JavaScript code with chrome privileges via unspecified vectors.
network
low complexity
mozilla CWE-94
7.5
2015-01-14 CVE-2014-8635 Memory Corruption vulnerability in Mozilla Firefox/Thunderbird/SeaMonkey
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 35.0 and SeaMonkey before 2.32 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
network
low complexity
mozilla
7.5
2015-01-14 CVE-2014-8634 Memory Corruption vulnerability in Mozilla Firefox/Thunderbird/SeaMonkey
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 35.0, Firefox ESR 31.x before 31.4, Thunderbird before 31.4, and SeaMonkey before 2.32 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
network
low complexity
mozilla
7.5
2012-05-01 CVE-2011-3079 Resource Management Errors vulnerability in multiple products
The Inter-process Communication (IPC) implementation in Google Chrome before 18.0.1025.168, as used in Mozilla Firefox before 38.0 and other products, does not properly validate messages, which has unspecified impact and attack vectors.
network
low complexity
opensuse google mozilla CWE-399
critical
10.0