Skip to main content

Vendor/product archive

redhat / enterprise_linux_server_eus CVEs

Beta · best-effort

620 CVEs tagged to redhat / enterprise_linux_server_eus172 Critical, 240 High, 187 Medium, 21 Low, 0 Unrated.

CVE-2017-7800

Published Jun 11, 2018

A use-after-free vulnerability can occur in WebSockets when the object holding the connection is freed before the disconnection operation is finished. This results in an exploitab…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2017-7798

Published Jun 11, 2018

The Developer Tools feature suffers from a XUL injection vulnerability due to improper sanitization of the web page source code. In the worst case, this could allow arbitrary code…

CVSS 8.8 · High
evidence mentions
1
Buzz score
11.9

CVE-2017-7793

Published Jun 11, 2018

A use-after-free vulnerability can occur in the Fetch API when the worker or the associated window are freed when still in use, resulting in a potentially exploitable crash. This…

CVSS 9.8 · Critical

CVE-2017-7792

Published Jun 11, 2018

A buffer overflow will occur when viewing a certificate in the certificate manager if the certificate has an extremely long object identifier (OID). This results in a potentially…

CVSS 9.8 · Critical

CVE-2017-7791

Published Jun 11, 2018

On pages containing an iframe, the "data:" protocol can be used to create a modal alert that will render over arbitrary domains following page navigation, spoofing of the origin o…

CVSS 5.3 · Medium

CVE-2017-7787

Published Jun 11, 2018

Same-origin policy protections can be bypassed on pages with embedded iframes during page reloads, allowing the iframes to access content on the top level page, leading to informa…

CVSS 7.5 · High

CVE-2017-7786

Published Jun 11, 2018

A buffer overflow can occur when the image renderer attempts to paint non-displayable SVG elements. This results in a potentially exploitable crash. This vulnerability affects Thu…

CVSS 9.8 · Critical

CVE-2017-7785

Published Jun 11, 2018

A buffer overflow can occur when manipulating Accessible Rich Internet Applications (ARIA) attributes within the DOM. This results in a potentially exploitable crash. This vulnera…

CVSS 9.8 · Critical

CVE-2017-7784

Published Jun 11, 2018

A use-after-free vulnerability can occur when reading an image observer during frame reconstruction after the observer has been freed. This results in a potentially exploitable cr…

CVSS 9.8 · Critical

CVE-2017-7779

Published Jun 11, 2018

Memory safety bugs were reported in Firefox 54, Firefox ESR 52.2, and Thunderbird 52.2. Some of these bugs showed evidence of memory corruption and we presume that with enough eff…

CVSS 9.8 · Critical
evidence mentions
1
Buzz score
11.9

CVE-2017-7758

Published Jun 11, 2018

An out-of-bounds read vulnerability with the Opus encoder when the number of channels in an audio stream changes while the encoder is in use. This vulnerability affects Firefox <…

CVSS 9.1 · Critical

CVE-2017-7754

Published Jun 11, 2018

An out-of-bounds read in WebGL with a maliciously crafted "ImageInfo" object during WebGL operations. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thunderbird…

CVSS 7.5 · High

CVE-2017-7753

Published Jun 11, 2018

An out-of-bounds read occurs when applying style rules to pseudo-elements, such as ::first-line, using cached style data. This vulnerability affects Thunderbird < 52.3, Firefox ES…

CVSS 9.1 · Critical

CVE-2017-7752

Published Jun 11, 2018

A use-after-free vulnerability during specific user interactions with the input method editor (IME) in some languages due to how events are handled. This results in a potentially…

CVSS 8.8 · High

CVE-2017-7751

Published Jun 11, 2018

A use-after-free vulnerability with content viewer listeners that results in a potentially exploitable crash. This vulnerability affects Firefox < 54, Firefox ESR < 52.2, and Thun…

CVSS 9.8 · Critical

CVE-2017-7750

Published Jun 11, 2018

A use-after-free vulnerability during video control operations when a "<track>" element holds a reference to an older window if that window has been replaced in the DOM. This resu…

CVSS 9.8 · Critical

CVE-2017-7749

Published Jun 11, 2018

A use-after-free vulnerability when using an incorrect URL during the reloading of a docshell. This results in a potentially exploitable crash. This vulnerability affects Firefox…

CVSS 9.8 · Critical

CVE-2017-5472

Published Jun 11, 2018

A use-after-free vulnerability with the frameloader during tree reconstruction while regenerating CSS layout when attempting to use a node in the tree that no longer exists. This…

CVSS 9.8 · Critical

CVE-2017-5470

Published Jun 11, 2018

Memory safety bugs were reported in Firefox 53 and Firefox ESR 52.1. Some of these bugs showed evidence of memory corruption and we presume that with enough effort that some of th…

CVSS 9.8 · Critical

CVE-2017-5469

Published Jun 11, 2018

Fixed potential buffer overflows in generated Firefox code due to CVE-2016-6354 issue in Flex. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR < 52.…

CVSS 9.8 · Critical

CVE-2017-5466

Published Jun 11, 2018

If a page is loaded from an original site through a hyperlink and contains a redirect to a "data:text/html" URL, triggering a reload will run the reloaded "data:text/html" page wi…

CVSS 6.1 · Medium

CVE-2017-5465

Published Jun 11, 2018

An out-of-bounds read while processing SVG content in "ConvolvePixel". This results in a crash and also allows for otherwise inaccessible memory being copied into SVG graphic cont…

CVSS 9.1 · Critical

CVE-2017-5464

Published Jun 11, 2018

During DOM manipulations of the accessibility tree through script, the DOM tree can become out of sync with the accessibility tree, leading to memory corruption and a potentially…

CVSS 9.8 · Critical

CVE-2017-5460

Published Jun 11, 2018

A use-after-free vulnerability in frame selection triggered by a combination of malicious script content and key presses by a user. This results in a potentially exploitable crash…

CVSS 9.8 · Critical

CVE-2017-5459

Published Jun 11, 2018

A buffer overflow in WebGL triggerable by web content, resulting in a potentially exploitable crash. This vulnerability affects Thunderbird < 52.1, Firefox ESR < 45.9, Firefox ESR…

CVSS 9.8 · Critical
Showing 226-250 of 620 CVEsPage 10 of 25