2017 CVE Vulnerabilities
17,104 CVEs published in 2017.
| CVE ID | Severity | CVSS | EPSS | Published | Description |
|---|---|---|---|---|---|
| CVE-2017-7758 | — | — | 3.1% | Jun 11, 2018 | An out-of-bounds read vulnerability with the Opus encoder when the number of channels in an audio stream changes while t... |
| CVE-2017-7757 | — | — | 2.7% | Jun 11, 2018 | A use-after-free vulnerability in IndexedDB when one of its objects is destroyed in memory while a method on it is still... |
| CVE-2017-7756 | — | — | 2.7% | Jun 11, 2018 | A use-after-free and use-after-scope vulnerability when logging errors from headers for XML HTTP Requests (XHR). This co... |
| CVE-2017-7755 | — | — | 1.4% | Jun 11, 2018 | The Firefox installer on Windows can be made to load malicious DLL files stored in the same directory as the installer w... |
| CVE-2017-7754 | — | — | 2.5% | Jun 11, 2018 | An out-of-bounds read in WebGL with a maliciously crafted "ImageInfo" object during WebGL operations. This vulnerability... |
| CVE-2017-7753 | — | — | 3.2% | Jun 11, 2018 | An out-of-bounds read occurs when applying style rules to pseudo-elements, such as ::first-line, using cached style data... |
| CVE-2017-7752 | — | — | 2.0% | Jun 11, 2018 | A use-after-free vulnerability during specific user interactions with the input method editor (IME) in some languages du... |
| CVE-2017-7751 | — | — | 2.9% | Jun 11, 2018 | A use-after-free vulnerability with content viewer listeners that results in a potentially exploitable crash. This vulne... |
| CVE-2017-7750 | — | — | 2.9% | Jun 11, 2018 | A use-after-free vulnerability during video control operations when a "<track>" element holds a reference to an older wi... |
| CVE-2017-7749 | — | — | 2.7% | Jun 11, 2018 | A use-after-free vulnerability when using an incorrect URL during the reloading of a docshell. This results in a potenti... |
| CVE-2017-5472 | — | — | 2.7% | Jun 11, 2018 | A use-after-free vulnerability with the frameloader during tree reconstruction while regenerating CSS layout when attemp... |
| CVE-2017-5471 | — | — | 1.7% | Jun 11, 2018 | Memory safety bugs were reported in Firefox 53. Some of these bugs showed evidence of memory corruption and we presume t... |
| CVE-2017-5470 | — | — | 2.6% | Jun 11, 2018 | Memory safety bugs were reported in Firefox 53 and Firefox ESR 52.1. Some of these bugs showed evidence of memory corrup... |
| CVE-2017-5469 | — | — | 4.7% | Jun 11, 2018 | Fixed potential buffer overflows in generated Firefox code due to CVE-2016-6354 issue in Flex. This vulnerability affect... |
| CVE-2017-5468 | — | — | 2.5% | Jun 11, 2018 | An issue with incorrect ownership model of "privateBrowsing" information exposed through developer tools. This can resul... |
| CVE-2017-5467 | — | — | 2.5% | Jun 11, 2018 | A potential memory corruption and crash when using Skia content when drawing content outside of the bounds of a clipping... |
| CVE-2017-5466 | — | — | 1.6% | Jun 11, 2018 | If a page is loaded from an original site through a hyperlink and contains a redirect to a "data:text/html" URL, trigger... |
| CVE-2017-5465 | — | — | 18.9% | Jun 11, 2018 | An out-of-bounds read while processing SVG content in "ConvolvePixel". This results in a crash and also allows for other... |
| CVE-2017-5464 | — | — | 2.6% | Jun 11, 2018 | During DOM manipulations of the accessibility tree through script, the DOM tree can become out of sync with the accessib... |
| CVE-2017-5463 | — | — | 1.5% | Jun 11, 2018 | Android intents can be used to launch Firefox for Android in reader mode with a user specified URL. This allows an attac... |
| CVE-2017-5462 | — | — | 2.6% | Jun 11, 2018 | A flaw in DRBG number generation within the Network Security Services (NSS) library where the internal state V does not ... |
| CVE-2017-5460 | — | — | 3.1% | Jun 11, 2018 | A use-after-free vulnerability in frame selection triggered by a combination of malicious script content and key presses... |
| CVE-2017-5459 | — | — | 4.7% | Jun 11, 2018 | A buffer overflow in WebGL triggerable by web content, resulting in a potentially exploitable crash. This vulnerability ... |
| CVE-2017-5458 | — | — | 1.4% | Jun 11, 2018 | When a "javascript:" URL is drag and dropped by a user into the addressbar, the URL will be processed and executed. This... |
| CVE-2017-5456 | — | — | 2.8% | Jun 11, 2018 | A mechanism to bypass file system access protections in the sandbox using the file system request constructor through an... |
Check if your code is affected by 2017 CVEs
Strix scans your code and infrastructure for known vulnerabilities automatically.
Scan your code now