Vulnerabilities > Mozilla > Netscape Portable Runtime > 4.4.1

DATE CVE VULNERABILITY TITLE RISK
2016-08-07 CVE-2016-1951 Integer Overflow or Wraparound vulnerability in Mozilla Netscape Portable Runtime
Multiple integer overflows in io/prprf.c in Mozilla Netscape Portable Runtime (NSPR) before 4.12 allow remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact via a long string to a PR_*printf function.
network
low complexity
mozilla CWE-190
7.5
2014-06-11 CVE-2014-1545 Out of Bounds Memory Corruption vulnerability in Mozilla Netscape Portable Runtime
Mozilla Netscape Portable Runtime (NSPR) before 4.10.6 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds write) via vectors involving the sprintf and console functions.
network
low complexity
mozilla
critical
10.0
2013-11-20 CVE-2013-5607 Numeric Errors vulnerability in Mozilla products
Integer overflow in the PL_ArenaAllocate function in Mozilla Netscape Portable Runtime (NSPR) before 4.10.2, as used in Firefox before 25.0.1, Firefox ESR 17.x before 17.0.11 and 24.x before 24.1.1, and SeaMonkey before 2.22.1, allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted X.509 certificate, a related issue to CVE-2013-1741.
network
low complexity
mozilla CWE-189
7.5