Search CVE reports


Toggle filters

1551 – 1560 of 3250 results


CVE-2018-12378

Medium priority
Fixed

A use-after-free vulnerability can occur when an IndexedDB index is deleted while still in use by JavaScript code that is providing payload values to be stored. This results in a potentially exploitable crash. This vulnerability...

3 affected packages

firefox, firefox-esr, thunderbird

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed
firefox-esr Not in release
thunderbird Fixed
Show less packages

CVE-2018-12377

Medium priority
Fixed

A use-after-free vulnerability can occur when refresh driver timers are refreshed in some circumstances during shutdown when the timer is deleted while still in use. This results in a potentially exploitable crash....

3 affected packages

firefox, firefox-esr, thunderbird

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed
firefox-esr Not in release
thunderbird Fixed
Show less packages

CVE-2018-12376

Medium priority

Some fixes available 30 of 37

Memory safety bugs present in Firefox 61 and Firefox ESR 60.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This...

5 affected packages

firefox, firefox-esr, mozjs38, mozjs52, thunderbird

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed Fixed Fixed Fixed
firefox-esr Not in release Not in release Not in release Not in release
mozjs38 Not in release Not in release Not in release Ignored
mozjs52 Not in release Not in release Ignored Ignored
thunderbird Fixed Fixed Fixed Fixed
Show less packages

CVE-2018-12375

Medium priority

Some fixes available 15 of 22

Memory safety bugs present in Firefox 61. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 62.

3 affected packages

firefox, mozjs38, mozjs52

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed Fixed Fixed Fixed
mozjs38 Not in release Not in release Not in release Ignored
mozjs52 Not in release Not in release Ignored Ignored
Show less packages

CVE-2018-3693

High priority

Some fixes available 18 of 24

Systems with microprocessors utilizing speculative execution and branch prediction may allow unauthorized disclosure of information to an attacker with local user access via a speculative buffer overflow and side-channel analysis.

79 affected packages

linux-aws-fips, linux-azure-fips, linux-gcp-fips, firefox, intel-microcode...

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
linux-aws-fips Not in release Not affected Not affected Not affected
linux-azure-fips Not in release Not affected Not affected Not affected
linux-gcp-fips Not in release Not affected Not affected Not affected
firefox Not affected Not affected Not in release Not affected
intel-microcode Not affected Not affected Not affected Fixed
linux Not affected Not affected Not affected Not affected
linux-aws Not affected Not affected Not affected Not affected
linux-aws-5.15 Not in release Not in release Not affected Not in release
linux-aws-5.4 Not in release Not in release Not in release Not affected
linux-aws-6.8 Not in release Not affected Not in release Not in release
linux-aws-hwe Not in release Not in release Not in release Not in release
linux-azure Not affected Not affected Not affected Not affected
linux-azure-4.15 Not in release Not in release Not in release Not affected
linux-azure-5.15 Not in release Not in release Not affected Not in release
linux-azure-5.4 Not in release Not in release Not in release Not affected
linux-azure-6.8 Not in release Not affected Not in release Not in release
linux-azure-edge Not in release Not in release Not in release Not affected
linux-azure-fde Not affected Not affected Ignored Not in release
linux-azure-fde-5.15 Not in release Not in release Not affected Not in release
linux-bluefield Not in release Not in release Not affected Not in release
linux-euclid Not in release
linux-fips Not in release Not affected Not affected Not affected
linux-flo Not in release
linux-gcp Not affected Not affected Not affected Not affected
linux-gcp-4.15 Not in release Not in release Not in release Not affected
linux-gcp-5.15 Not in release Not in release Not affected Not in release
linux-gcp-5.4 Not in release Not in release Not in release Not affected
linux-gcp-6.8 Not in release Not affected Not in release Not in release
linux-gke Not affected Not affected Ignored Not in release
linux-gkeop Not affected Not affected Not affected Not in release
linux-gkeop-5.15 Not in release Not in release Not affected Not in release
linux-goldfish Not in release
linux-grouper Not in release
linux-hwe Not in release Not in release Not in release Not affected
linux-hwe-5.15 Not in release Not in release Not affected Not in release
linux-hwe-5.4 Not in release Not in release Not in release Not affected
linux-hwe-6.8 Not in release Not affected Not in release Not in release
linux-hwe-edge Not in release Not in release Not in release Not affected
linux-ibm Not affected Not affected Not affected Not in release
linux-ibm-5.15 Not in release Not in release Not affected Not in release
linux-ibm-5.4 Not in release Not in release Not in release Not affected
linux-intel Not affected Not in release Not in release Not in release
linux-intel-iot-realtime Not in release Not affected Not in release Not in release
linux-intel-iotg Not in release Not affected Not in release Not in release
linux-intel-iotg-5.15 Not in release Not in release Not affected Not in release
linux-iot Not in release Not in release Not affected Not in release
linux-kvm Not in release Not affected Not affected Not affected
linux-lowlatency Not affected Not affected Not in release Not in release
linux-lowlatency-hwe-5.15 Not in release Not in release Not affected Not in release
linux-lowlatency-hwe-6.8 Not in release Not affected Not in release Not in release
linux-lts-trusty Not in release
linux-lts-utopic Not in release
linux-lts-vivid Not in release
linux-lts-wily Not in release
linux-lts-xenial Not in release Not in release Not in release Not in release
linux-maguro Not in release
linux-mako Not in release
linux-manta Not in release
linux-nvidia Not affected Not affected Not in release Not in release
linux-nvidia-6.5 Not in release Not affected Not in release Not in release
linux-nvidia-6.8 Not in release Not affected Not in release Not in release
linux-nvidia-lowlatency Not affected Not in release Not in release Not in release
linux-oem Not in release Not in release Not in release Not affected
linux-oem-6.11 Not affected Not in release Not in release Not in release
linux-oem-6.8 Not affected Not in release Not in release Not in release
linux-oracle Not affected Not affected Not affected Not affected
linux-oracle-5.15 Not in release Not in release Not affected Not in release
linux-oracle-5.4 Not in release Not in release Not in release Not affected
linux-oracle-6.8 Not in release Not affected Not in release Not in release
linux-raspi Not affected Not affected Not affected Not in release
linux-raspi-5.4 Not in release Not in release Not in release Not affected
linux-raspi-realtime Not affected Not in release Not in release Not in release
linux-raspi2 Not in release Not in release Ignored Not affected
linux-realtime Not affected Not affected Not in release Not in release
linux-riscv Not affected Ignored Ignored Not in release
linux-riscv-5.15 Not in release Not in release Not affected Not in release
linux-riscv-6.8 Not in release Not affected Not in release Not in release
linux-snapdragon Not in release Not in release Not in release Not affected
linux-xilinx-zynqmp Not in release Not affected Not affected Not in release
Show all 79 packages Show less packages

CVE-2018-5188

Medium priority

Some fixes available 38 of 41

Memory safety bugs present in Firefox 60, Firefox ESR 60, and Firefox ESR 52.8. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary...

4 affected packages

firefox, mozjs38, mozjs52, thunderbird

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed Fixed Fixed Fixed
mozjs38 Not in release Not in release Not in release Ignored
mozjs52 Not in release Not in release Fixed Fixed
thunderbird Fixed Fixed Fixed Fixed
Show less packages

CVE-2018-5187

Medium priority

Some fixes available 16 of 25

Memory safety bugs present in Firefox 60 and Firefox ESR 60. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code....

3 affected packages

firefox, mozjs38, mozjs52

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed Fixed Fixed Fixed
mozjs38 Not in release Not in release Not in release Ignored
mozjs52 Not in release Not in release Ignored Ignored
Show less packages

CVE-2018-5186

Medium priority

Some fixes available 16 of 25

Memory safety bugs present in Firefox 60. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of these could be exploited to run arbitrary code. This vulnerability affects Firefox < 61.

3 affected packages

firefox, mozjs38, mozjs52

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed Fixed Fixed Fixed
mozjs38 Not in release Not in release Not in release Ignored
mozjs52 Not in release Not in release Ignored Ignored
Show less packages

CVE-2018-5156

Medium priority
Fixed

A vulnerability can occur when capturing a media stream when the media source type is changed as the capture is occurring. This can result in stream data being cast to the wrong type causing a potentially exploitable crash. This...

1 affected package

firefox

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed
Show less packages

CVE-2018-12371

Medium priority
Fixed

An integer overflow vulnerability in the Skia library when allocating memory for edge builders on some systems with at least 16 GB of RAM. This results in the use of uninitialized memory, resulting in a potentially exploitable...

1 affected package

firefox

Package 26.04 LTS 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS
firefox Fixed
Show less packages