Known vulnerabilities in firefox (Alpine package)

Software CPE: cpe:2.3:o:alpine:firefox_alpine_package:*:*:*:*:*:alpine_linux:*:*
Total vulnerabilities: 146
Public exploits: 8
Known exploited (KEV): 5
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting firefox (Alpine package) firefox (Alpine package) is affected by 146 known vulnerabilities: 5 critical, 49 high, 45 medium, 47 low Critical High Medium Low

Vulnerabilities (146)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU49300 - Use After Free
CVE-2020-16044
CWE-416 High
No
No
84.0.2-r0 06.01.2021 SB2021010608
SB2021010702
SB2021010703
and 31 more
#VU49025 - Memory corruption
CVE-2020-35114
CWE-119 High
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121625
SB2020121567
and 1 more
#VU49024 - Memory corruption
CVE-2020-35113
CWE-119 High
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 21 more
#VU49023 - Data Handling
CVE-2020-35112
CWE-19 Medium
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121533
SB2020121552
and 2 more
#VU49022 - Exposure of sensitive information to an unauthorized actor
CVE-2020-35111
CWE-200 Medium
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 20 more
#VU49021 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-26979
CWE-451 Medium
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121625
SB2020121563
and 2 more
#VU49020 - Permissions, Privileges, and Access Controls
CVE-2020-26978
CWE-264 Medium
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 20 more
#VU49019 - User Interface (UI) Misrepresentation of Critical Information (Clickjacking, spoofing)
CVE-2020-26977
CWE-451 Medium
No
No
84.0.1-r0 15.12.2020 SB2020121532
SB2020121561
#VU49018 - Resource Management Errors
CVE-2020-26976
CWE-399 Low
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121625
SB2020121560
and 18 more
#VU49017 - Permissions, Privileges, and Access Controls
CVE-2020-26975
CWE-264 Low
No
No
84.0.1-r0 15.12.2020 SB2020121532
SB2020121559
#VU49016 - Type confusion
CVE-2020-26974
CWE-843 High
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 20 more
#VU49015 - Improper input validation
CVE-2020-26973
CWE-20 Medium
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 20 more
#VU49014 - Use After Free
CVE-2020-26972
CWE-416 High
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121625
SB2020121556
and 1 more
#VU49013 - Heap-based Buffer Overflow
CVE-2020-26971
CWE-122 High
No
No
84.0.1-r0 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 22 more
#VU48790 - Use of Uninitialized Resource
CVE-2020-16042
CWE-908 Medium
No
No
84.0.1-r0 02.12.2020 SB2020120501
SB2020120703
SB2020120912
and 29 more
#VU48473 - Memory corruption
CVE-2020-26969
CWE-119 High
No
No
- 17.11.2020 SB2020111707
SB2020111709
SB2020111712
and 3 more
#VU48472 - Memory corruption
CVE-2020-26968
CWE-119 High
No
No
- 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more
#VU48471 - Resource Management Errors
CVE-2020-26967
CWE-399 Low
No
No
- 17.11.2020 SB2020111707
SB2020111709
SB2020111712
and 3 more
#VU48470 - Exposure of sensitive information to an unauthorized actor
CVE-2020-26966
CWE-200 Low
No
No
- 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 3 more
#VU48469 - Exposure of sensitive information to an unauthorized actor
CVE-2020-26965
CWE-200 Low
No
No
- 17.11.2020 SB2020111707
SB2020111708
SB2020111709
and 26 more


Showing elements 1 - 20 out of 146