Known vulnerabilities in firefox-esr (Debian package) 60.5.1esr-1

Vendor: Debian
Version: 60.5.1esr-1
Software CPE: cpe:2.3:o:debian:firefox-esr_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 46
Public exploits: 3
Known exploited (KEV): 0
Highest CVSSv4 Score: 9.3

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting firefox-esr (Debian package) version 60.5.1esr-1 firefox-esr (Debian package) 60.5.1esr-1 is affected by 46 vulnerabilities: 26 high, 10 medium, 10 low Critical High Medium Low

Vulnerabilities (46)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU50889 - Memory corruption
CVE-2021-23978
CWE-119 High
No
No
78.8.0esr-1~deb10u1 23.02.2021 SB2021022318
SB2021022319
SB2021022503
and 22 more
#VU50888 - Exposure of sensitive information to an unauthorized actor
CVE-2021-23973
CWE-200 Low
No
No
78.8.0esr-1~deb10u1 23.02.2021 SB2021022318
SB2021022319
SB2021022503
and 21 more
#VU50881 - Improperly Implemented Security Check for Standard
CVE-2021-23968
CWE-358 Medium
No
No
78.8.0esr-1~deb10u1 23.02.2021 SB2021022318
SB2021022319
SB2021022503
and 21 more
#VU50879 - Improperly Implemented Security Check for Standard
CVE-2021-23969
CWE-358 Medium
No
No
78.8.0esr-1~deb10u1 23.02.2021 SB2021022318
SB2021022319
SB2021022503
and 21 more
#VU49024 - Memory corruption
CVE-2020-35113
CWE-119 High
No
No
78.6.0esr-1~deb10u1 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 21 more
#VU49022 - Exposure of sensitive information to an unauthorized actor
CVE-2020-35111
CWE-200 Medium
No
No
78.6.0esr-1~deb10u1 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 20 more
#VU49020 - Permissions, Privileges, and Access Controls
CVE-2020-26978
CWE-264 Medium
No
No
78.6.0esr-1~deb10u1 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 20 more
#VU49016 - Type confusion
CVE-2020-26974
CWE-843 High
No
No
78.6.0esr-1~deb10u1 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 20 more
#VU49015 - Improper input validation
CVE-2020-26973
CWE-20 Medium
No
No
78.6.0esr-1~deb10u1 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 20 more
#VU49013 - Heap-based Buffer Overflow
CVE-2020-26971
CWE-122 High
No
No
78.6.0esr-1~deb10u1 15.12.2020 SB2020121531
SB2020121533
SB2020121625
and 22 more
#VU48790 - Use of Uninitialized Resource
CVE-2020-16042
CWE-908 Medium
No
No
78.6.0esr-1~deb10u1 02.12.2020 SB2020120501
SB2020120703
SB2020120912
and 29 more
#VU47746 - Memory corruption
CVE-2020-15683
CWE-119 High
No
No
78.4.0esr-1~deb10u2 20.10.2020 SB2020102042
SB2020102207
SB2020102311
and 26 more
#VU47360 - Use After Free
CVE-2020-15969
CWE-416 High
No
No
78.4.0esr-1~deb10u2 07.10.2020 SB2020100713
SB2020101003
SB2020101319
and 55 more
#VU28527 - Memory corruption
CVE-2020-12410
CWE-119 High
No
No
68.9.0esr-1~deb9u1, 68.9.0esr-1~deb10u1 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 24 more
#VU28524 - Type confusion
CVE-2020-12406
CWE-843 High
No
No
68.9.0esr-1~deb9u1, 68.9.0esr-1~deb10u1 02.06.2020 SB2020060216
SB2020060215
SB2020060301
and 25 more
#VU28523 - Use After Free
CVE-2020-12405
CWE-416 High
No
No
68.9.0esr-1~deb9u1, 68.9.0esr-1~deb10u1 02.06.2020 SB2020060215
SB2020060216
SB2020060301
and 25 more
#VU28522 - Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CVE-2020-12399
CWE-362 Medium
No
No
68.9.0esr-1~deb9u1, 68.9.0esr-1~deb10u1 02.06.2020 SB2020060214
SB2020060215
SB2020060216
and 15 more
#VU27538 - Memory corruption
CVE-2020-12395
CWE-119 High
No
No
68.8.0esr-1~deb9u1, 68.8.0esr-1~deb10u1 05.05.2020 SB2020050511
SB2020050518
SB2020050606
and 29 more
#VU27535 - Improper input validation
CVE-2020-12392
CWE-20 Low
No
No
68.8.0esr-1~deb9u1, 68.8.0esr-1~deb10u1 05.05.2020 SB2020050511
SB2020050518
SB2020050606
and 29 more
#VU27532 - Memory corruption
CVE-2020-6831
CWE-119 High
No
No
68.8.0esr-1~deb9u1, 68.8.0esr-1~deb10u1 05.05.2020 SB2020050511
SB2020050517
SB2020050518
and 37 more


Showing elements 1 - 20 out of 46