firefox vulnerabilities

Direct Vulnerabilities

Known vulnerabilities in the firefox package. This does not include vulnerabilities belonging to this package’s dependencies.

How to fix?

Automatically find and fix vulnerabilities affecting your projects. Snyk scans for vulnerabilities and provides fixes for free.

Fix for free
VulnerabilityVulnerable Version
  • M
CVE-2015-2731

<39.0+build5-0ubuntu0.14.10.1
  • M
Code

<39.0+build5-0ubuntu0.14.10.1
  • M
Code

<39.0+build5-0ubuntu0.14.10.1
  • M
Cryptographic Issues

<39.0+build5-0ubuntu0.14.10.1
  • M
Code

<39.0+build5-0ubuntu0.14.10.1
  • M
CVE-2015-2733

<39.0+build5-0ubuntu0.14.10.1
  • M
Code

<39.0+build5-0ubuntu0.14.10.1
  • M
Code

<39.0+build5-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<39.0+build5-0ubuntu0.14.10.1
  • M
Code

<39.0+build5-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<39.0+build5-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<39.0+build5-0ubuntu0.14.10.1
  • M
Cryptographic Issues

<39.0+build5-0ubuntu0.14.10.1
  • M
Cryptographic Issues

<39.0+build5-0ubuntu0.14.10.1
  • M
Improper Input Validation

<39.0+build5-0ubuntu0.14.10.1
  • M
CVE-2015-2722

<39.0+build5-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<39.0+build5-0ubuntu0.14.10.1
  • M
CVE-2015-2728

<39.0+build5-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<39.0+build5-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<39.0+build5-0ubuntu0.14.10.1
  • M
Cryptographic Issues

<39.0+build5-0ubuntu0.14.10.1
  • M
CVE-2015-2713

<38.0+build3-0ubuntu0.14.10.1
  • M
Numeric Errors

<38.0+build3-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<38.0+build3-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<38.0+build3-0ubuntu0.14.10.1
  • M
CVE-2015-2709

<38.0+build3-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<38.0+build3-0ubuntu0.14.10.1
  • L
Information Exposure

<38.0+build3-0ubuntu0.14.10.1
  • M
Race Condition

<38.0+build3-0ubuntu0.14.10.1
  • M
Information Exposure

<38.0+build3-0ubuntu0.14.10.1
  • M
CVE-2015-2708

<38.0+build3-0ubuntu0.14.10.1
  • M
Race Condition

<37.0.2+build1-0ubuntu0.14.10.1
  • M
Improper Input Validation

<37.0.1+build1-0ubuntu0.14.10.1
  • M
Code

<37.0+build2-0ubuntu0.14.10.1
  • L
Code

<37.0+build2-0ubuntu0.14.10.1
  • M
Cross-site Request Forgery (CSRF)

<37.0+build2-0ubuntu0.14.10.1
  • M
Access Restriction Bypass

<37.0+build2-0ubuntu0.14.10.1
  • M
CVE-2015-0814

<37.0+build2-0ubuntu0.14.10.1
  • L
Access Restriction Bypass

<37.0+build2-0ubuntu0.14.10.1
  • L
Access Restriction Bypass

<37.0+build2-0ubuntu0.14.10.1
  • M
CVE-2015-0815

<37.0+build2-0ubuntu0.14.10.1
  • M
Code

<37.0+build2-0ubuntu0.14.10.1
  • M
Code

<37.0+build2-0ubuntu0.14.10.1
  • M
Access Restriction Bypass

<37.0+build2-0ubuntu0.14.10.1
  • M
Access Restriction Bypass

<37.0+build2-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<37.0+build2-0ubuntu0.14.10.1
  • M
CVE-2015-0813

<37.0+build2-0ubuntu0.14.10.1
  • M
Code

<36.0.4+build1-0ubuntu0.14.10.1
  • M
Access Restriction Bypass

<36.0.4+build1-0ubuntu0.14.10.1
  • M
Resource Management Errors

<36.0+build2-0ubuntu0.14.10.4
  • M
Out-of-Bounds

<36.0+build2-0ubuntu0.14.10.4
  • M
CVE-2015-0836

<36.0+build2-0ubuntu0.14.10.4
  • M
Out-of-Bounds

<36.0+build2-0ubuntu0.14.10.4
  • M
Out-of-Bounds

<36.0+build2-0ubuntu0.14.10.4
  • M
CVE-2015-0831

<36.0+build2-0ubuntu0.14.10.4
  • M
Security Features

<36.0+build2-0ubuntu0.14.10.4
  • M
Improper Access Control

<36.0+build2-0ubuntu0.14.10.4
  • L
Out-of-Bounds

<36.0+build2-0ubuntu0.14.10.4
  • L
CVE-2015-0823

<36.0+build2-0ubuntu0.14.10.4
  • M
Information Exposure

<36.0+build2-0ubuntu0.14.10.4
  • M
Out-of-Bounds

<36.0+build2-0ubuntu0.14.10.4
  • M
CVE-2015-0835

<36.0+build2-0ubuntu0.14.10.4
  • M
Information Exposure

<36.0+build2-0ubuntu0.14.10.4
  • M
Improper Data Handling

<36.0+build2-0ubuntu0.14.10.4
  • M
Access Restriction Bypass

<36.0+build2-0ubuntu0.14.10.4
  • M
Arbitrary Code Injection

<35.0+build3-0ubuntu0.14.10.2
  • L
Cryptographic Issues

<35.0+build3-0ubuntu0.14.10.2
  • M
CVE-2014-8641

<35.0+build3-0ubuntu0.14.10.2
  • M
CVE-2014-8634

<35.0+build3-0ubuntu0.14.10.2
  • M
Race Condition

<35.0+build3-0ubuntu0.14.10.2
  • M
CVE-2014-8635

<35.0+build3-0ubuntu0.14.10.2
  • M
Cross-site Request Forgery (CSRF)

<35.0+build3-0ubuntu0.14.10.2
  • M
CVE-2014-8639

<35.0+build3-0ubuntu0.14.10.2
  • M
Information Exposure

<35.0+build3-0ubuntu0.14.10.2
  • M
Improper Access Control

<34.0
  • M
Improper Access Control

<34.0
  • M
Information Management Errors

<34.0+build2-0ubuntu0.14.10.1
  • M
Improper Input Validation

<34.0+build2-0ubuntu0.14.10.1
  • M
CVE-2014-1588

<34.0+build2-0ubuntu0.14.10.1
  • M
CVE-2014-1592

<34.0+build2-0ubuntu0.14.10.1
  • M
Improper Input Validation

<34.0+build2-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<34.0+build2-0ubuntu0.14.10.1
  • M
Improper Input Validation

<34.0+build2-0ubuntu0.14.10.1
  • M
Improper Access Control

<34.0+build2-0ubuntu0.14.10.1
  • M
Out-of-Bounds

<15.0+build1-0ubuntu1
  • M
Information Exposure

<12.0+build1-0ubuntu0.12.04.1