Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 30.0, Firefox ESR 24.x before 24.6, and Thunderbird before 24.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
| Software | From | Fixed in |
|---|---|---|
| mozilla / firefox_esr | 24.5 | 24.5.x |
| mozilla / firefox_esr | 24.2 | 24.2.x |
| mozilla / firefox_esr | 24.0.2 | 24.0.2.x |
| mozilla / firefox_esr | 24.4 | 24.4.x |
| mozilla / firefox_esr | 24.3 | 24.3.x |
| mozilla / firefox_esr | 24.0.1 | 24.0.1.x |
| mozilla / firefox | - | 29.0.1.x |
| mozilla / firefox | 24.0 | 24.0.x |
| mozilla / firefox | 24.1.0 | 24.1.0.x |
| mozilla / firefox | 24.1.1 | 24.1.1.x |