Information on source package iceweasel

Available versions

ReleaseVersion
wheezy, sid10.0.4esr-2
experimental12.0-6
squeeze3.5.16-14
squeeze3.5.16-15

Open issues

BugDescription
CVE-2011-1187Google Chrome before 10.0.648.127 allows remote attackers to bypass ...
CVE-2012-0475Mozilla Firefox 4.x through 11.0, Thunderbird 5.0 through 11.0, and ...

Open unimportant issues

BugDescription
CVE-2002-2436The Cascading Style Sheets (CSS) implementation in Mozilla Firefox ...
CVE-2002-2437The JavaScript implementation in Mozilla Firefox before 4.0, ...
CVE-2004-1639Mozilla Firefox before 0.10, Mozilla 5.0, and Gecko 20040913 allows ...
CVE-2005-2395Mozilla Firefox 1.0.4 and 1.0.5 does not choose the challenge with the ...
CVE-2005-4685Firefox and Mozilla can associate a cookie with multiple domains when ...
CVE-2006-2723Unspecified versions of Mozilla Firefox allow remote attackers to ...
CVE-2006-5633Firefox 1.5.0.7 and 2.0, and Seamonkey 1.1b, allows remote attackers ...
CVE-2006-6954Flock beta 1 0.7 allows remote attackers to cause a denial of service ...
CVE-2007-1084Mozilla Firefox 2.0.0.1 and earlier does not prompt users before ...
CVE-2007-1256Mozilla Firefox 2.0.0.2 allows remote attackers to spoof the address ...
CVE-2007-1736Mozilla Firefox 2.0.0.3 does not check URLs embedded in (1) object or ...
CVE-2007-1970Mozilla Firefox does not warn the user about HTTP elements on an HTTPS ...
CVE-2007-2162(1) Mozilla Firefox 2.0.0.3 and (2) GNU IceWeasel 2.0.0.3 allow remote ...
CVE-2007-2671Mozilla Firefox 2.0.0.3 allows remote attackers to cause a denial of ...
CVE-2007-4357Mozilla Firefox 2.0.0.6 and earlier allows remote attackers to spoof ...
CVE-2007-5415Cross-site scripting (XSS) vulnerability in Mozilla Firefox 2.0, when ...
CVE-2007-5896Mozilla Firefox 2.0.0.9 allows remote attackers to cause a denial of ...
CVE-2007-6715Mozilla Firefox allows remote attackers to cause a denial of service ...
CVE-2008-2014Mozilla Firefox 3.0 beta 5 allows remote attackers to cause a denial ...
CVE-2008-3444The content layout component in Mozilla Firefox 3.0 and 3.0.1 allows ...
CVE-2008-4324The user interface event dispatcher in Mozilla Firefox 3.0.3 on ...
CVE-2008-5715Mozilla Firefox 3.0.5 on Windows Vista allows remote attackers to ...
CVE-2008-7293Mozilla Firefox before 4 cannot properly restrict modifications to ...
CVE-2009-0071Mozilla Firefox 3.0.5 and earlier 3.0.x versions, when designMode is ...
CVE-2009-0821Mozilla Firefox 2.0.0.20 and earlier allows remote attackers to cause ...
CVE-2009-3010Mozilla Firefox 3.0.13 and earlier, 3.5, 3.6 a1 pre, and 3.7 a1 pre; ...
CVE-2009-3014Mozilla Firefox 3.0.13 and earlier, 3.5, 3.6 a1 pre, and 3.7 a1 pre; ...
CVE-2010-5074The layout engine in Mozilla Firefox before 4.0, Thunderbird before ...
CVE-2011-0082The X.509 certificate validation functionality in Mozilla Firefox ...
CVE-2011-1202The xsltGenerateIdFunction function in functions.c in libxslt 1.1.26 ...
CVE-2011-1712The txXPathNodeUtils::getXSLTId function in ...
CVE-2011-3658The SVG implementation in Mozilla Firefox 8.0, Thunderbird 8.0, and ...
CVE-2011-4688Mozilla Firefox 8.0.1 and earlier does not prevent capture of data ...

Resolved issues

BugDescription
CVE-2005-2414Race condition in the xpcom library, as used by web browsers such as ...
CVE-2005-4874The XMLHttpRequest object in Mozilla 1.7.8 supports the HTTP TRACE ...
CVE-2006-0496Cross-site scripting (XSS) vulnerability in Mozilla 1.7.12 and ...
CVE-2006-2894Mozilla Firefox 1.5.0.4, 2.0.x before 2.0.0.8, Mozilla Suite 1.7.13, ...
CVE-2006-4310Mozilla Firefox 1.5.0.6 allows remote attackers to cause a denial of ...
CVE-2006-5462Mozilla Network Security Service (NSS) library before 3.11.3, as used ...
CVE-2006-5463Unspecified vulnerability in Mozilla Firefox before 1.5.0.8, ...
CVE-2006-5464Multiple unspecified vulnerabilities in the layout engine in Mozilla ...
CVE-2006-5747Unspecified vulnerability in Mozilla Firefox before 1.5.0.8, ...
CVE-2006-5748Multiple unspecified vulnerabilities in the JavaScript engine in ...
CVE-2006-6077The (1) Password Manager in Mozilla Firefox 2.0, and 1.5.0.8 and ...
CVE-2006-6497Multiple unspecified vulnerabilities in the layout engine for Mozilla ...
CVE-2006-6498Multiple unspecified vulnerabilities in the JavaScript engine for ...
CVE-2006-6499The js_dtoa function in Mozilla Firefox 2.x before 2.0.0.1, 1.5.x ...
CVE-2006-6500Heap-based buffer overflow in Mozilla Firefox 2.x before 2.0.0.1, ...
CVE-2006-6501Unspecified vulnerability in Mozilla Firefox 2.x before 2.0.0.1, 1.5.x ...
CVE-2006-6502Use-after-free vulnerability in the LiveConnect bridge code for ...
CVE-2006-6503Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird ...
CVE-2006-6504Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, and ...
CVE-2006-6506The "Feed Preview" feature in Mozilla Firefox 2.0 before 2.0.0.1 sends ...
CVE-2006-6507Mozilla Firefox 2.0 before 2.0.0.1 allows remote attackers to bypass ...
CVE-2006-6585The Extensions manager in Mozilla Firefox 2.0 does not properly ...
CVE-2006-6971Mozilla Firefox 2.0, possibly only when running on Windows, allows ...
CVE-2007-0008Integer underflow in the SSLv2 support in Mozilla Network Security ...
CVE-2007-0009Stack-based buffer overflow in the SSLv2 support in Mozilla Network ...
CVE-2007-0775Multiple unspecified vulnerabilities in the layout engine in Mozilla ...
CVE-2007-0776Heap-based buffer overflow in the _cairo_pen_init function in Mozilla ...
CVE-2007-0777The JavaScript engine in Mozilla Firefox before 1.5.0.10 and 2.x ...
CVE-2007-0778The page cache feature in Mozilla Firefox before 1.5.0.10 and 2.x ...
CVE-2007-0779GUI overlay vulnerability in Mozilla Firefox 1.5.x before 1.5.0.10 and ...
CVE-2007-0780browser.js in Mozilla Firefox 1.5.x before 1.5.0.10 and 2.x before ...
CVE-2007-0800Cross-zone vulnerability in Mozilla Firefox 1.5.0.9 considers blocked ...
CVE-2007-0801The nsExternalAppHandler::SetUpTempFile function in Mozilla Firefox ...
CVE-2007-0802Mozilla Firefox 2.0.0.1 allows remote attackers to bypass the Phishing ...
CVE-2007-0981Mozilla based browsers, including Firefox before 1.5.0.10 and 2.x ...
CVE-2007-0994A regression error in Mozilla Firefox 2.x before 2.0.0.2 and 1.x ...
CVE-2007-0995Mozilla Firefox before 1.5.0.10 and 2.x before 2.0.0.2, and SeaMonkey ...
CVE-2007-0996The child frames in Mozilla Firefox before 1.5.0.10 and 2.x before ...
CVE-2007-1004Mozilla Firefox might allow remote attackers to conduct spoofing and ...
CVE-2007-1092Mozilla Firefox 1.5.0.9 and 2.0.0.1, and SeaMonkey before 1.0.8 allow ...
CVE-2007-1095Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 do not ...
CVE-2007-1116The CheckLoadURI function in Mozilla Firefox 1.8 lists the about: URI ...
CVE-2007-1362Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and ...
CVE-2007-1562The FTP protocol implementation in Mozilla Firefox before 1.5.0.11 and ...
CVE-2007-1762Mozilla Firefox 2.0.0.1 through 2.0.0.3 does not canonicalize URLs ...
CVE-2007-2292CRLF injection vulnerability in the Digest Authentication support for ...
CVE-2007-2867Multiple vulnerabilities in the layout engine for Mozilla Firefox ...
CVE-2007-2868Multiple vulnerabilities in the JavaScript engine for Mozilla Firefox ...
CVE-2007-2869The form autocomplete feature in Mozilla Firefox 1.5.x before ...
CVE-2007-2870Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and ...
CVE-2007-2871Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and ...
CVE-2007-3072Directory traversal vulnerability in Mozilla Firefox before 2.0.0.4 on ...
CVE-2007-3074Mozilla Firefox 2.0.0.4 and earlier allows remote attackers to read ...
CVE-2007-3089Mozilla Firefox before 2.0.0.5 does not prevent use of document.write ...
CVE-2007-3285Mozilla Firefox before 2.0.0.5, when run on Windows, allows remote ...
CVE-2007-3511The focus handling for the onkeydown event in Mozilla Firefox ...
CVE-2007-3656Mozilla Firefox before 1.8.0.13 and 1.8.1.x before 1.8.1.5 does not ...
CVE-2007-3670Argument injection vulnerability in Microsoft Internet Explorer, when ...
CVE-2007-3734Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2007-3735Multiple unspecified vulnerabilities in the JavaScript engine in ...
CVE-2007-3736Cross-site scripting (XSS) vulnerability in Mozilla Firefox before ...
CVE-2007-3737Mozilla Firefox before 2.0.0.5 allows remote attackers to execute ...
CVE-2007-3738Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.5 ...
CVE-2007-3844Mozilla Firefox 2.0.0.5, Thunderbird 2.0.0.5 and before 1.5.0.13, and ...
CVE-2007-3845Mozilla Firefox before 2.0.0.6, Thunderbird before 1.5.0.13 and 2.x ...
CVE-2007-4038Argument injection vulnerability in Mozilla Firefox before 2.0.0.5, ...
CVE-2007-4041Multiple argument injection vulnerabilities in Mozilla Firefox 2.0.0.5 ...
CVE-2007-4841Mozilla Firefox before 2.0.0.8, Thunderbird before 2.0.0.8, and ...
CVE-2007-4879Mozilla Firefox before Firefox 2.0.0.13, and SeaMonkey before 1.1.9, ...
CVE-2007-5045Argument injection vulnerability in Apple QuickTime 7.1.5 and earlier, ...
CVE-2007-5334Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 can hide the ...
CVE-2007-5335Mozilla Firefox 2.0 before 2.0.0.8 allows remote attackers to obtain ...
CVE-2007-5337Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5, when ...
CVE-2007-5338Mozilla Firefox before 2.0.0.8 and SeaMonkey before 1.1.5 allow remote ...
CVE-2007-5339Multiple vulnerabilities in Mozilla Firefox before 2.0.0.8, ...
CVE-2007-5340Multiple vulnerabilities in the Javascript engine in Mozilla Firefox ...
CVE-2007-5414Cross-site scripting (XSS) vulnerability in Mozilla Firefox before ...
CVE-2007-5691ParseFTPList.cpp in Mozilla Firefox 2.0.0.7 allows remote FTP servers ...
CVE-2007-5947The jar protocol handler in Mozilla Firefox before 2.0.0.10 and ...
CVE-2007-5959Multiple unspecified vulnerabilities in Mozilla Firefox before ...
CVE-2007-5960Mozilla Firefox before 2.0.0.10 and SeaMonkey before 1.1.7 sets the ...
CVE-2007-6589The jar protocol handler in Mozilla Firefox before 2.0.0.10 and ...
CVE-2008-0016Stack-based buffer overflow in the URL parsing implementation in ...
CVE-2008-0017The http-index-format MIME type parser (nsDirIndexParser) in Firefox ...
CVE-2008-0367Mozilla Firefox 2.0.0.11, 3.0b2, and possibly earlier versions, when ...
CVE-2008-0412The browser engine in Mozilla Firefox before 2.0.0.12, Thunderbird ...
CVE-2008-0413The JavaScript engine in Mozilla Firefox before 2.0.0.12, Thunderbird ...
CVE-2008-0414Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows ...
CVE-2008-0415Mozilla Firefox before 2.0.0.12, Thunderbird before 2.0.0.12, and ...
CVE-2008-0416Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox ...
CVE-2008-0417CRLF injection vulnerability in Mozilla Firefox before 2.0.0.12 allows ...
CVE-2008-0418Directory traversal vulnerability in Mozilla Firefox before 2.0.0.12, ...
CVE-2008-0419Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows ...
CVE-2008-0420modules/libpr0n/decoders/bmp/nsBMPDecoder.cpp in Mozilla Firefox ...
CVE-2008-0591Mozilla Firefox before 2.0.0.12 and Thunderbird before 2.0.0.12 does ...
CVE-2008-0592Mozilla Firefox before 2.0.0.12 and SeaMonkey before 1.1.8 allows ...
CVE-2008-0593Gecko-based browsers, including Mozilla Firefox before 2.0.0.12 and ...
CVE-2008-0594Mozilla Firefox before 2.0.0.12 does not always display a web forgery ...
CVE-2008-1233Unspecified vulnerability in Mozilla Firefox before 2.0.0.13, ...
CVE-2008-1234Cross-site scripting (XSS) vulnerability in Mozilla Firefox before ...
CVE-2008-1235Unspecified vulnerability in Mozilla Firefox before 2.0.0.13, ...
CVE-2008-1236Multiple unspecified vulnerabilities in Mozilla Firefox before ...
CVE-2008-1237Multiple unspecified vulnerabilities in Mozilla Firefox before ...
CVE-2008-1238Mozilla Firefox before 2.0.0.13 and SeaMonkey before 1.1.9, when ...
CVE-2008-1240LiveConnect in Mozilla Firefox before 2.0.0.13 and SeaMonkey before ...
CVE-2008-1241GUI overlay vulnerability in Mozilla Firefox before 2.0.0.13 and ...
CVE-2008-1380The JavaScript engine in Mozilla Firefox before 2.0.0.14, Thunderbird ...
CVE-2008-2785Mozilla Firefox before 2.0.0.16 and 3.x before 3.0.1, Thunderbird ...
CVE-2008-2798Multiple unspecified vulnerabilities in Mozilla Firefox before ...
CVE-2008-2799Multiple unspecified vulnerabilities in Mozilla Firefox before ...
CVE-2008-2800Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 allow ...
CVE-2008-2801Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not ...
CVE-2008-2802Mozilla Firefox before 2.0.0.15, Thunderbird 2.0.0.14 and earlier, and ...
CVE-2008-2803The mozIJSSubScriptLoader.LoadScript function in Mozilla Firefox ...
CVE-2008-2805Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 allow ...
CVE-2008-2806Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 on Mac OS ...
CVE-2008-2807Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not ...
CVE-2008-2808Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not ...
CVE-2008-2809Mozilla 1.9 M8 and earlier, Mozilla Firefox 2 before 2.0.0.15, ...
CVE-2008-2810Mozilla Firefox before 2.0.0.15 and SeaMonkey before 1.1.10 do not ...
CVE-2008-2811The block reflow implementation in Mozilla Firefox before 2.0.0.15, ...
CVE-2008-2933Mozilla Firefox before 2.0.0.16, and 3.x before 3.0.1, interprets '|' ...
CVE-2008-2934Mozilla Firefox 3 before 3.0.1 on Mac OS X allows remote attackers to ...
CVE-2008-3198Mozilla Firefox 3.x before 3.0.1 allows remote attackers to inject ...
CVE-2008-3835The nsXMLDocument::OnChannelRedirect function in Mozilla Firefox ...
CVE-2008-3836feedWriter in Mozilla Firefox before 2.0.0.17 allows remote attackers ...
CVE-2008-3837Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, and SeaMonkey ...
CVE-2008-4058The XPConnect component in Mozilla Firefox before 2.0.0.17 and 3.x ...
CVE-2008-4059The XPConnect component in Mozilla Firefox before 2.0.0.17 allows ...
CVE-2008-4060Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird ...
CVE-2008-4061Integer overflow in the MathML component in Mozilla Firefox before ...
CVE-2008-4062Multiple unspecified vulnerabilities in Mozilla Firefox before ...
CVE-2008-4063Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before ...
CVE-2008-4064Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before ...
CVE-2008-4065Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird ...
CVE-2008-4066Mozilla Firefox 2.0.0.14, and other versions before 2.0.0.17, allows ...
CVE-2008-4067Directory traversal vulnerability in Mozilla Firefox before 2.0.0.17 ...
CVE-2008-4068Directory traversal vulnerability in Mozilla Firefox before 2.0.0.17 ...
CVE-2008-4069The XBM decoder in Mozilla Firefox before 2.0.0.17 and SeaMonkey ...
CVE-2008-4582Mozilla Firefox 3.0.1 through 3.0.3, Firefox 2.x before 2.0.0.18, and ...
CVE-2008-4723Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox ...
CVE-2008-5012Mozilla Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, ...
CVE-2008-5013Mozilla Firefox 2.x before 2.0.0.18 and SeaMonkey 1.x before 1.1.13 do ...
CVE-2008-5014jslock.cpp in Mozilla Firefox 3.x before 3.0.2, Firefox 2.x before ...
CVE-2008-5015Mozilla Firefox 3.x before 3.0.4 assigns chrome privileges to a file: ...
CVE-2008-5016The layout engine in Mozilla Firefox 3.x before 3.0.4, Thunderbird 2.x ...
CVE-2008-5017Integer overflow in xpcom/io/nsEscape.cpp in the browser engine in ...
CVE-2008-5018The JavaScript engine in Mozilla Firefox 3.x before 3.0.4, Firefox 2.x ...
CVE-2008-5019The session restore feature in Mozilla Firefox 3.x before 3.0.4 and ...
CVE-2008-5021nsFrameManager in Firefox 3.x before 3.0.4, Firefox 2.x before ...
CVE-2008-5022The nsXMLHttpRequest::NotifyEventListeners method in Firefox 3.x ...
CVE-2008-5023Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, and SeaMonkey ...
CVE-2008-5024Mozilla Firefox 3.x before 3.0.4, Firefox 2.x before 2.0.0.18, ...
CVE-2008-5052The AppendAttributeValue function in the JavaScript engine in Mozilla ...
CVE-2008-5500The layout engine in Mozilla Firefox 3.x before 3.0.5 and 2.x before ...
CVE-2008-5501The layout engine in Mozilla Firefox 3.x before 3.0.5, Thunderbird 2.x ...
CVE-2008-5502The layout engine in Mozilla Firefox 3.x before 3.0.5, Thunderbird 2.x ...
CVE-2008-5503The loadBindingDocument function in Mozilla Firefox 2.x before ...
CVE-2008-5504Mozilla Firefox 2.x before 2.0.0.19 allows remote attackers to run ...
CVE-2008-5505Mozilla Firefox 3.x before 3.0.5 allows remote attackers to bypass ...
CVE-2008-5506Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird ...
CVE-2008-5507Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird ...
CVE-2008-5508Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird ...
CVE-2008-5510The CSS parser in Mozilla Firefox 3.x before 3.0.5 and 2.x before ...
CVE-2008-5511Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird ...
CVE-2008-5512Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before ...
CVE-2008-5513Unspecified vulnerability in the session-restore feature in Mozilla ...
CVE-2009-0352Multiple unspecified vulnerabilities in Mozilla Firefox 3.x before ...
CVE-2009-0353Unspecified vulnerability in Mozilla Firefox 3.x before 3.0.6, ...
CVE-2009-0354Cross-domain vulnerability in js/src/jsobj.cpp in Mozilla Firefox 3.x ...
CVE-2009-0355components/sessionstore/src/nsSessionStore.js in Mozilla Firefox ...
CVE-2009-0356Mozilla Firefox before 3.0.6 and SeaMonkey do not block links to the ...
CVE-2009-0357Mozilla Firefox before 3.0.6 and SeaMonkey before 1.1.15 do not ...
CVE-2009-0358Mozilla Firefox 3.x before 3.0.6 does not properly implement the (1) ...
CVE-2009-0772The layout engine in Mozilla Firefox 2 and 3 before 3.0.7, Thunderbird ...
CVE-2009-0774The layout engine in Mozilla Firefox 2 and 3 before 3.0.7, Thunderbird ...
CVE-2009-0776nsIRDFService in Mozilla Firefox before 3.0.7, Thunderbird before ...
CVE-2009-0777Mozilla Firefox before 3.0.7, Thunderbird before 2.0.0.21, and ...
CVE-2009-1310Cross-site scripting (XSS) vulnerability in the MozSearch plugin ...
CVE-2009-2535Mozilla Firefox before 2.0.0.19 and 3.x before 3.0.5, SeaMonkey, and ...
CVE-2009-3079Unspecified vulnerability in Mozilla Firefox before 3.0.14, and 3.5.x ...
CVE-2009-3385The mail component in Mozilla SeaMonkey before 1.1.19 does not ...
CVE-2009-3388liboggplay in Mozilla Firefox 3.5.x before 3.5.6 and SeaMonkey before ...
CVE-2009-3389Integer overflow in libtheora in Xiph.Org Theora before 1.1, as used ...
CVE-2009-3560The big2_toUtf8 function in lib/xmltok.c in libexpat in Expat 2.0.1, ...
CVE-2009-3720The updatePosition function in lib/xmltok_impl.c in libexpat in Expat ...
CVE-2009-3979Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2009-3980Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2009-3981Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2009-3983Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey ...
CVE-2009-3984Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey ...
CVE-2009-3985Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey ...
CVE-2009-3986Mozilla Firefox before 3.0.16 and 3.5.x before 3.5.6, and SeaMonkey ...
CVE-2009-3988Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and ...
CVE-2009-4629Mozilla Necko, as used in Thunderbird 3.0.1, SeaMonkey, and other ...
CVE-2009-4630Mozilla Necko, as used in Firefox, SeaMonkey, and other applications, ...
CVE-2010-0159The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x ...
CVE-2010-0160The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 ...
CVE-2010-0161The nsAuthSSPI::Unwrap function in extensions/auth/nsAuthSSPI.cpp in ...
CVE-2010-0162Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and ...
CVE-2010-0164Use-after-free vulnerability in the ...
CVE-2010-0165The TraceRecorder::traverseScopeChain function in js/src/jstracer.cpp ...
CVE-2010-0166The gfxTextRun::SanitizeGlyphRuns function in ...
CVE-2010-0167The browser engine in Mozilla Firefox 3.0.x before 3.0.18, 3.5.x ...
CVE-2010-0168The nsDocument::MaybePreLoadImage function in ...
CVE-2010-0169The CSSLoaderImpl::DoSheetComplete function in ...
CVE-2010-0170Mozilla Firefox 3.6 before 3.6.2 does not offer plugins the expected ...
CVE-2010-0171Mozilla Firefox 3.0.x before 3.0.18, 3.5.x before 3.5.8, and 3.6.x ...
CVE-2010-0172toolkit/components/passwordmgr/src/nsLoginManagerPrompter.js in the ...
CVE-2010-0173Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2010-0174Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2010-0175Use-after-free vulnerability in the nsTreeSelection implementation in ...
CVE-2010-0176Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before ...
CVE-2010-0177Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before ...
CVE-2010-0178Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before ...
CVE-2010-0179Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.8, and SeaMonkey ...
CVE-2010-0181Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, and SeaMonkey ...
CVE-2010-0182The XMLDocument::load function in Mozilla Firefox before 3.5.9 and ...
CVE-2010-0183Use-after-free vulnerability in the nsCycleCollector::MarkRoots ...
CVE-2010-0654Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, ...
CVE-2010-1196Integer overflow in the nsGenericDOMDataNode::SetTextInternal function ...
CVE-2010-1197Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, and ...
CVE-2010-1198Use-after-free vulnerability in Mozilla Firefox 3.5.x before 3.5.10 ...
CVE-2010-1199Integer overflow in the XSLT node sorting implementation in Mozilla ...
CVE-2010-1200Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2010-1201Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2010-1202Multiple unspecified vulnerabilities in the JavaScript engine in ...
CVE-2010-1203The JavaScript engine in Mozilla Firefox 3.6.x before 3.6.4 allow ...
CVE-2010-1206The startDocumentLoad function in browser/base/content/browser.js in ...
CVE-2010-1207Mozilla Firefox before 3.6.7 and Thunderbird before 3.1.1 do not ...
CVE-2010-1209Use-after-free vulnerability in the NodeIterator implementation in ...
CVE-2010-1210intl/uconv/util/nsUnicodeDecodeHelper.cpp in Mozilla Firefox before ...
CVE-2010-1211Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2010-1212js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6.x ...
CVE-2010-1213The importScripts Web Worker method in Mozilla Firefox 3.5.x before ...
CVE-2010-1214Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x ...
CVE-2010-1215Mozilla Firefox 3.6.x before 3.6.7 and Thunderbird 3.1.x before 3.1.1 ...
CVE-2010-1585The nsIScriptableUnescapeHTML.parseFragment method in the ...
CVE-2010-2751The nsDocShell::OnRedirectStateChange function in ...
CVE-2010-2752Integer overflow in an array class in Mozilla Firefox 3.5.x before ...
CVE-2010-2753Integer overflow in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x ...
CVE-2010-2754dom/base/nsJSEnvironment.cpp in Mozilla Firefox 3.5.x before 3.5.11 ...
CVE-2010-2755layout/generic/nsObjectFrame.cpp in Mozilla Firefox 3.6.7 does not ...
CVE-2010-2760Use-after-free vulnerability in the nsTreeSelection function in ...
CVE-2010-2762The XPCSafeJSObjectWrapper class in the SafeJSObjectWrapper (aka SJOW) ...
CVE-2010-2763The XPCSafeJSObjectWrapper class in the SafeJSObjectWrapper (aka SJOW) ...
CVE-2010-2764Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird ...
CVE-2010-2765Integer overflow in the FRAMESET element implementation in Mozilla ...
CVE-2010-2766The normalizeDocument function in Mozilla Firefox before 3.5.12 and ...
CVE-2010-2767The navigator.plugins implementation in Mozilla Firefox before 3.5.12 ...
CVE-2010-2768Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird ...
CVE-2010-2769Cross-site scripting (XSS) vulnerability in Mozilla Firefox before ...
CVE-2010-2770Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird ...
CVE-2010-3131Untrusted search path vulnerability in Mozilla Firefox before 3.5.12 ...
CVE-2010-3166Heap-based buffer overflow in the nsTextFrameUtils::TransformText ...
CVE-2010-3167The nsTreeContentView function in Mozilla Firefox before 3.5.12 and ...
CVE-2010-3168Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird ...
CVE-2010-3169Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2010-3174Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2010-3175Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2010-3176Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2010-3177Multiple cross-site scripting (XSS) vulnerabilities in the Gopher ...
CVE-2010-3178Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird ...
CVE-2010-3179Stack-based buffer overflow in the text-rendering functionality in ...
CVE-2010-3180Use-after-free vulnerability in the nsBarProp function in Mozilla ...
CVE-2010-3181Untrusted search path vulnerability in Mozilla Firefox before 3.5.14 ...
CVE-2010-3182A certain application-launch script in Mozilla Firefox before 3.5.14 ...
CVE-2010-3183The LookupGetterOrSetter function in js3250.dll in Mozilla Firefox ...
CVE-2010-3765Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, ...
CVE-2010-3766Use-after-free vulnerability in Mozilla Firefox before 3.5.16 and ...
CVE-2010-3767Integer overflow in the NewIdArray function in Mozilla Firefox before ...
CVE-2010-3768Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, Thunderbird ...
CVE-2010-3769The line-breaking implementation in Mozilla Firefox before 3.5.16 and ...
CVE-2010-3770Multiple cross-site scripting (XSS) vulnerabilities in the rendering ...
CVE-2010-3771Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey ...
CVE-2010-3772Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey ...
CVE-2010-3773Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey ...
CVE-2010-3774The NS_SecurityCompareURIs function in netwerk/base/public/nsNetUtil.h ...
CVE-2010-3775Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey ...
CVE-2010-3776Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2010-3777Unspecified vulnerability in Mozilla Firefox 3.6.x before 3.6.13 and ...
CVE-2010-3778Unspecified vulnerability in Mozilla Firefox 3.5.x before 3.5.16, ...
CVE-2011-0051Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey ...
CVE-2011-0053Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-0054Buffer overflow in the JavaScript engine in Mozilla Firefox before ...
CVE-2011-0055Use-after-free vulnerability in the JSON.stringify method in ...
CVE-2011-0056Buffer overflow in the JavaScript engine in Mozilla Firefox before ...
CVE-2011-0057Use-after-free vulnerability in the Web Workers implementation in ...
CVE-2011-0058Buffer overflow in Mozilla Firefox before 3.5.17 and 3.6.x before ...
CVE-2011-0059Cross-site request forgery (CSRF) vulnerability in Mozilla Firefox ...
CVE-2011-0061Buffer overflow in Mozilla Firefox 3.6.x before 3.6.14, Thunderbird ...
CVE-2011-0062Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-0065Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and ...
CVE-2011-0066Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and ...
CVE-2011-0067Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey ...
CVE-2011-0068
CVE-2011-0069Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-0070Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-0071Directory traversal vulnerability in Mozilla Firefox before 3.5.19 and ...
CVE-2011-0072Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-0073Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey ...
CVE-2011-0074Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-0075Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-0076Unspecified vulnerability in the Java Embedding Plugin (JEP) in ...
CVE-2011-0077Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-0078Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-0079Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-0080Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-0081Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-0083Use-after-free vulnerability in the nsSVGPathSegList::ReplaceItem ...
CVE-2011-0084The SVGTextElement.getCharNumAtPosition function in Mozilla Firefox ...
CVE-2011-0085Use-after-free vulnerability in the nsXULCommandDispatcher function in ...
CVE-2011-2362Mozilla Firefox before 3.6.18, Thunderbird before 3.1.11, and ...
CVE-2011-2363Use-after-free vulnerability in the nsSVGPointList::AppendElement ...
CVE-2011-2364Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-2365Unspecified vulnerability in the browser engine in Mozilla Firefox ...
CVE-2011-2366Mozilla Gecko before 5.0, as used in Firefox before 5.0 and ...
CVE-2011-2367The WebGL implementation in Mozilla Firefox 4.x through 4.0.1 does not ...
CVE-2011-2368The WebGL implementation in Mozilla Firefox 4.x through 4.0.1 does not ...
CVE-2011-2369Cross-site scripting (XSS) vulnerability in Mozilla Firefox 4.x ...
CVE-2011-2370Mozilla Firefox before 5.0 does not properly enforce the whitelist for ...
CVE-2011-2371Integer overflow in the Array.reduceRight method in Mozilla Firefox ...
CVE-2011-2372Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before ...
CVE-2011-2373Use-after-free vulnerability in Mozilla Firefox before 3.6.18 and 4.x ...
CVE-2011-2374Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-2375Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-2376Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-2377Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird ...
CVE-2011-2378The appendChild function in Mozilla Firefox before 3.6.20, Thunderbird ...
CVE-2011-2598The WebGL implementation in Mozilla Firefox 4.x allows remote ...
CVE-2011-2605CRLF injection vulnerability in the ...
CVE-2011-2980Untrusted search path vulnerability in the ThinkPadSensor::Startup ...
CVE-2011-2981The event-management implementation in Mozilla Firefox before 3.6.20, ...
CVE-2011-2982Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-2983Mozilla Firefox before 3.6.20, Thunderbird 2.x and 3.x before 3.1.12, ...
CVE-2011-2984Mozilla Firefox before 3.6.20, SeaMonkey 2.x, Thunderbird 3.x before ...
CVE-2011-2985Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-2986Mozilla Firefox 4.x through 5, Thunderbird before 6, SeaMonkey 2.x ...
CVE-2011-2987Heap-based buffer overflow in Almost Native Graphics Layer Engine ...
CVE-2011-2988Buffer overflow in an unspecified string class in the WebGL shader ...
CVE-2011-2989The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x ...
CVE-2011-2990The implementation of Content Security Policy (CSP) violation reports ...
CVE-2011-2991The browser engine in Mozilla Firefox 4.x through 5, SeaMonkey 2.x ...
CVE-2011-2992The Ogg reader in the browser engine in Mozilla Firefox 4.x through 5, ...
CVE-2011-2993The implementation of digital signatures for JAR files in Mozilla ...
CVE-2011-2995Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-2996Unspecified vulnerability in the plugin API in Mozilla Firefox 3.6.x ...
CVE-2011-2997Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-2998Integer underflow in Mozilla Firefox 3.6.x before 3.6.23 allows remote ...
CVE-2011-2999Mozilla Firefox before 3.6.23 and 4.x through 5, Thunderbird before ...
CVE-2011-3000Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before ...
CVE-2011-3001Mozilla Firefox 4.x through 6, Thunderbird before 7.0, and SeaMonkey ...
CVE-2011-3002Almost Native Graphics Layer Engine (ANGLE), as used in Mozilla ...
CVE-2011-3003Mozilla Firefox before 7.0 and SeaMonkey before 2.4 allow remote ...
CVE-2011-3004The JSSubScriptLoader in Mozilla Firefox 4.x through 6 and SeaMonkey ...
CVE-2011-3005Use-after-free vulnerability in Mozilla Firefox 4.x through 6, ...
CVE-2011-3062Off-by-one error in the OpenType Sanitizer in Google Chrome before ...
CVE-2011-3232YARR, as used in Mozilla Firefox before 7.0, Thunderbird before 7.0, ...
CVE-2011-3389The SSL protocol, as used in certain configurations in Microsoft ...
CVE-2011-3647The JSSubScriptLoader in Mozilla Firefox before 3.6.24 and Thunderbird ...
CVE-2011-3648Cross-site scripting (XSS) vulnerability in Mozilla Firefox before ...
CVE-2011-3649Mozilla Firefox 7.0 and Thunderbird 7.0, when the Direct2D (aka D2D) ...
CVE-2011-3650Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird ...
CVE-2011-3651Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-3652The browser engine in Mozilla Firefox before 8.0 and Thunderbird ...
CVE-2011-3653Mozilla Firefox before 8.0 and Thunderbird before 8.0 on Mac OS X do ...
CVE-2011-3654The browser engine in Mozilla Firefox before 8.0 and Thunderbird ...
CVE-2011-3655Mozilla Firefox 4.x through 7.0 and Thunderbird 5.0 through 7.0 ...
CVE-2011-3659Use-after-free vulnerability in Mozilla Firefox before 3.6.26 and 4.x ...
CVE-2011-3660Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2011-3661YARR, as used in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 ...
CVE-2011-3663Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and ...
CVE-2011-3664Mozilla Firefox before 9.0, Thunderbird before 9.0, and SeaMonkey ...
CVE-2011-3665Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and ...
CVE-2011-3666Mozilla Firefox before 3.6.25 and Thunderbird before 3.1.17 on Mac OS ...
CVE-2011-3670Mozilla Firefox before 3.6.26 and 4.x through 6.0, Thunderbird before ...
CVE-2011-3866Mozilla Firefox before 7.0 and SeaMonkey before 2.4 do not properly ...
CVE-2012-0442Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2012-0443Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2012-0444Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before ...
CVE-2012-0445Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and ...
CVE-2012-0446Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox ...
CVE-2012-0447Mozilla Firefox 4.x through 9.0, Thunderbird 5.0 through 9.0, and ...
CVE-2012-0449Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before ...
CVE-2012-0450Mozilla Firefox 4.x through 9.0 and SeaMonkey before 2.7 on Linux and ...
CVE-2012-0451CRLF injection vulnerability in Mozilla Firefox 4.x through 10.0, ...
CVE-2012-0452Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, ...
CVE-2012-0454Use-after-free vulnerability in Mozilla Firefox 4.x through 10.0, ...
CVE-2012-0455Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x ...
CVE-2012-0456The SVG Filters implementation in Mozilla Firefox before 3.6.28 and ...
CVE-2012-0457Use-after-free vulnerability in the ...
CVE-2012-0458Mozilla Firefox before 3.6.28 and 4.x through 10.0, Firefox ESR 10.x ...
CVE-2012-0459The Cascading Style Sheets (CSS) implementation in Mozilla Firefox 4.x ...
CVE-2012-0460Mozilla Firefox 4.x through 10.0, Firefox ESR 10.x before 10.0.3, ...
CVE-2012-0461Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2012-0462Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2012-0463The nsWindow implementation in the browser engine in Mozilla Firefox ...
CVE-2012-0464Use-after-free vulnerability in the browser engine in Mozilla Firefox ...
CVE-2012-0467Multiple unspecified vulnerabilities in the browser engine in Mozilla ...
CVE-2012-0468The browser engine in Mozilla Firefox 4.x through 11.0, Thunderbird ...
CVE-2012-0469Use-after-free vulnerability in the ...
CVE-2012-0470Heap-based buffer overflow in the ...
CVE-2012-0471Cross-site scripting (XSS) vulnerability in Mozilla Firefox 4.x ...
CVE-2012-0472The cairo-dwrite implementation in Mozilla Firefox 4.x through 11.0, ...
CVE-2012-0473The WebGLBuffer::FindMaxUshortElement function in Mozilla Firefox 4.x ...
CVE-2012-0474Cross-site scripting (XSS) vulnerability in the docshell ...
CVE-2012-0477Multiple cross-site scripting (XSS) vulnerabilities in Mozilla Firefox ...
CVE-2012-0478The texImage2D implementation in the WebGL subsystem in Mozilla ...
CVE-2012-0479Mozilla Firefox 4.x through 11.0, Firefox ESR 10.x before 10.0.4, ...

Security announcements

DSADescription
DSA-2457-1iceweasel - several
DSA-2433-1iceweasel - several
DSA-2400-1iceweasel - several
DSA-2341-1iceweasel - several
DSA-2313-1iceweasel - several
DSA-2296-1iceweasel - several
DSA-2268-1iceweasel - several
DSA-2228-1iceweasel - several
DSA-2186-1iceweasel - several
DSA-1886-1iceweasel - several vulnerabilities
DSA-1707-1iceweasel - several vulnerabilities
DSA-1671-1iceweasel - several vulnerabilities
DSA-1649-1iceweasel - several vulnerabilities
DSA-1614-1iceweasel - several vulnerabilities
DSA-1607-1iceweasel - several vulnerabilities
DSA-1555-1iceweasel - arbitrary code execution
DSA-1535-1iceweasel
DSA-1489-1iceweasel - several vulnerabilities
DSA-1424-1iceweasel - several vulnerabilities
DSA-1396-1iceweasel
DSA-1344-1iceweasel
DSA-1338-1iceweasel
DSA-1308-1iceweasel - several vulnerabilities

Search for package or bug name: Reporting problems

Home - Testing Security Team - Debian Security - Source (SVN)