Known vulnerabilities in firefox-esr (Debian package) - page 36

Vendor: Debian
Software CPE: cpe:2.3:o:debian:firefox-esr_debian_package:*:*:*:*:*:debian_linux:*:*
Total vulnerabilities: 755
Public exploits: 23
Known exploited (KEV): 11
Highest CVSSv4 Score: 9.3

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting firefox-esr (Debian package) firefox-esr (Debian package) is affected by 755 known vulnerabilities: 9 critical, 378 high, 243 medium, 125 low Critical High Medium Low

Vulnerabilities (755)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU25124 - Memory corruption
CVE-2020-6800
CWE-119 High
No
No
68.5.0esr-1, 68.5.0esr-1~deb8u1, 68.5.0esr-1~deb9u1, 68.5.0esr-1~deb10u1 11.02.2020 SB2020021108
SB2020021109
SB2020021110
and 26 more
#VU25122 - Improper Control of Generation of Code ('Code Injection')
CVE-2020-6798
CWE-94 Medium
No
No
68.5.0esr-1, 68.5.0esr-1~deb8u1, 68.5.0esr-1~deb9u1, 68.5.0esr-1~deb10u1 11.02.2020 SB2020021108
SB2020021109
SB2020021110
and 26 more
#VU25120 - Out-of-bounds write
CVE-2020-6796
CWE-787 High
No
No
68.5.0esr-1, 68.5.0esr-1~deb8u1, 68.5.0esr-1~deb9u1, 68.5.0esr-1~deb10u1 11.02.2020 SB2020021108
SB2020021110
SB2020021205
and 12 more
#VU24147 - Type confusion
CVE-2019-17026
CWE-843 Critical
Available
Exploited
68.4.1esr-1~deb10u1 08.01.2020 SB2020010819
SB2020010919
SB2020010922
and 21 more
#VU24062 - Memory corruption
CVE-2019-17024
CWE-119 High
No
No
68.4.1esr-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU24060 - Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')
CVE-2019-17022
CWE-79 Medium
No
No
68.4.1esr-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU24055 - Type confusion
CVE-2019-17017
CWE-843 Medium
No
No
68.4.1esr-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 20 more
#VU24054 - Improper Control of Generation of Code ('Code Injection')
CVE-2019-17016
CWE-94 Medium
No
No
68.4.1esr-1~deb10u1 07.01.2020 SB2020010708
SB2020010807
SB2020010712
and 21 more
#VU22173 - Memory corruption
CVE-2019-11764
CWE-119 High
No
No
68.2.0esr-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22168 - Protection Mechanism Failure
CVE-2019-11763
CWE-693 Low
No
No
68.2.0esr-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22167 - Permissions, Privileges, and Access Controls
CVE-2019-11762
CWE-264 Low
No
No
68.2.0esr-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22166 - Permissions, Privileges, and Access Controls
CVE-2019-11761
CWE-264 Low
No
No
68.2.0esr-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22165 - Stack-based buffer overflow
CVE-2019-11760
CWE-121 Medium
No
No
68.2.0esr-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22164 - Stack-based buffer overflow
CVE-2019-11759
CWE-121 Low
No
No
68.2.0esr-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU22163 - Use After Free
CVE-2019-11757
CWE-416 High
No
No
68.2.0esr-1~deb10u1 23.10.2019 SB2019102301
SB2019102302
SB2019102304
and 22 more
#VU21091 - Out-of-bounds read
CVE-2019-15903
CWE-125 Medium
Available
No
68.2.0esr-1~deb10u1 12.09.2019 SB2019091209
SB2019091210
SB2019091701
and 61 more
#VU20836 - Memory corruption
CVE-2019-11740
CWE-119 High
No
No
60.9.0esr-1~deb10u1 03.09.2019 SB2019090305
SB2019090306
SB2019090307
and 15 more
#VU20826 - Permissions, Privileges, and Access Controls
CVE-2019-11743
CWE-264 Medium
No
No
60.9.0esr-1~deb10u1 03.09.2019 SB2019090305
SB2019090306
SB2019090307
and 15 more
#VU20824 - Permissions, Privileges, and Access Controls
CVE-2019-9812
CWE-264 Medium
No
No
60.9.0esr-1~deb10u1 03.09.2019 SB2019090305
SB2019090306
SB2019090307
and 9 more
#VU20820 - Permissions, Privileges, and Access Controls
CVE-2019-11742
CWE-264 Low
No
No
60.9.0esr-1~deb10u1 03.09.2019 SB2019090305
SB2019090306
SB2019090307
and 15 more


Showing elements 701 - 720 out of 755