Filtered by vendor Netsurf-browser Subscriptions
Total 8 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2025-45663 1 Netsurf-browser 1 Netsurf 2025-11-05 6.5 Medium
An issue in NetSurf v3.11 causes the application to read uninitialized heap memory when creating a dom_event structure.
CVE-2024-51317 1 Netsurf-browser 1 Netsurf 2025-11-05 6.5 Medium
An issue in NetSurf v.3.11 allows a remote attacker to execute arbitrary code via the dom_node_normalize function
CVE-2025-29699 1 Netsurf-browser 1 Netsurf 2025-11-05 6.5 Medium
NetSurf 3.11 is vulnerable to Use After Free in dom_node_set_text_content function.
CVE-2015-7508 1 Netsurf-browser 1 Libnsbmp 2024-11-21 8.8 High
Heap-based buffer overflow in the bmp_decode_rle function in libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via the last row of RLE data in a crafted BMP file.
CVE-2015-7507 1 Netsurf-browser 1 Libnsbmp 2024-11-21 7.5 High
libnsbmp.c in Libnsbmp 0.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read) via a crafted color table to the (1) bmp_decode_rgb or (2) bmp_decode_rle function.
CVE-2015-7506 1 Netsurf-browser 1 Libnsgif 2024-11-21 6.5 Medium
The gif_next_LZW function in libnsgif.c in Libnsgif 0.1.2 allows context-dependent attackers to cause a denial of service (out-of-bounds read and application crash) via a crafted LZW stream in a GIF file.
CVE-2015-7505 1 Netsurf-browser 1 Libnsgif 2024-11-21 8.8 High
Stack-based buffer overflow in the gif_next_LZW function in libnsgif.c in Libnsgif 0.1.2 allows context-dependent attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted LZW stream in a GIF file.
CVE-2012-0844 2 Debian, Netsurf-browser 2 Debian Linux, Netsurf 2024-11-21 5.5 Medium
Information-disclosure vulnerability in Netsurf through 2.8 due to a world-readable cookie jar.