Known vulnerabilities in firefox-esr (Debian package) 68.4.0esr-1~deb9u1 - page 3

Vendor: Debian
Version: 68.4.0esr-1~deb9u1
Software CPE: cpe:2.3:o:debian:firefox-esr_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 48
Public exploits: 1
Known exploited (KEV): 3
Highest CVSSv4 Score: 8.7

Vulnerabilities by Severity

Severity distribution of vulnerabilities affecting firefox-esr (Debian package) version 68.4.0esr-1~deb9u1 firefox-esr (Debian package) 68.4.0esr-1~deb9u1 is affected by 48 vulnerabilities: 3 critical, 24 high, 16 medium, 5 low Critical High Medium Low

Vulnerabilities (48)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU25124 - Memory corruption
CVE-2020-6800
CWE-119 High
No
No
68.5.0esr-1, 68.5.0esr-1~deb8u1, 68.5.0esr-1~deb9u1, 68.5.0esr-1~deb10u1 11.02.2020 SB2020021108
SB2020021109
SB2020021110
and 26 more
#VU25122 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-6798
CWE-94 Medium
No
No
68.5.0esr-1, 68.5.0esr-1~deb8u1, 68.5.0esr-1~deb9u1, 68.5.0esr-1~deb10u1 11.02.2020 SB2020021108
SB2020021109
SB2020021110
and 26 more
#VU25120 - Out-of-bounds write
CVE-2020-6796
CWE-787 High
No
No
68.5.0esr-1, 68.5.0esr-1~deb8u1, 68.5.0esr-1~deb9u1, 68.5.0esr-1~deb10u1 11.02.2020 SB2020021108
SB2020021110
SB2020021205
and 12 more
#VU24147 - Type confusion
CVE-2019-17026
CWE-843 Critical
Public exploit available
Exploited
68.4.1esr-1~deb10u1 08.01.2020 SB2020010819
SB2020010919
SB2020010922
and 21 more
#VU24062 - Memory corruption
CVE-2019-17024
CWE-119 High
No
No
68.4.1esr-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU24060 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-17022
CWE-79 Medium
No
No
68.4.1esr-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU24055 - Type confusion
CVE-2019-17017
CWE-843 Medium
No
No
68.4.1esr-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 20 more
#VU24054 - Improper Control of Generation of Code ('Code Injection')
CVE-2019-17016
CWE-94 Medium
No
No
68.4.1esr-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more


Showing elements 41 - 60 out of 48