Vulnerabilities > Mozilla > Firefox > 38.3.0

DATE CVE VULNERABILITY TITLE RISK
2015-08-16 CVE-2015-4493 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in the stagefright::ESDS::parseESDescriptor function in libstagefright in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to execute arbitrary code via an invalid size field in an esds chunk in MPEG-4 video data, a related issue to CVE-2015-1539.
9.3
2015-08-16 CVE-2015-4492 Use After Free Memory Corruption vulnerability in Mozilla Firefox
Use-after-free vulnerability in the XMLHttpRequest::Open implementation in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 might allow remote attackers to execute arbitrary code via a SharedWorker object that makes recursive calls to the open method of an XMLHttpRequest object.
network
low complexity
oracle mozilla canonical opensuse
7.5
2015-08-16 CVE-2015-4490 Cross-site Scripting vulnerability in multiple products
The nsCSPHostSrc::permits function in dom/security/nsCSPUtils.cpp in Mozilla Firefox before 40.0 does not implement the Content Security Policy Level 2 exceptions for the blob, data, and filesystem URL schemes during wildcard source-expression matching, which might make it easier for remote attackers to conduct cross-site scripting (XSS) attacks by leveraging unexpected policy-enforcement behavior.
4.3
2015-08-16 CVE-2015-4489 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
The nsTArray_Impl class in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging a self assignment.
network
low complexity
oracle mozilla canonical opensuse CWE-119
7.5
2015-08-16 CVE-2015-4488 Use-after-free vulnerability in the StyleAnimationValue class in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 allows remote attackers to have an unspecified impact by leveraging a StyleAnimationValue::operator self assignment.
network
low complexity
oracle canonical opensuse mozilla
7.5
2015-08-16 CVE-2015-4487 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
The nsTSubstring::ReplacePrep function in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors, related to an "overflow."
network
low complexity
mozilla canonical opensuse oracle CWE-119
7.5
2015-08-16 CVE-2015-4486 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
The decrease_ref_count function in libvpx in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via malformed WebM video data.
network
low complexity
canonical opensuse mozilla oracle CWE-119
critical
10.0
2015-08-16 CVE-2015-4485 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
Heap-based buffer overflow in the resize_context_buffers function in libvpx in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to execute arbitrary code via malformed WebM video data.
network
low complexity
mozilla canonical opensuse oracle CWE-119
critical
10.0
2015-08-16 CVE-2015-4484 Improper Restriction of Operations within the Bounds of a Memory Buffer vulnerability in multiple products
The js::jit::AssemblerX86Shared::lock_addl function in the JavaScript implementation in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to cause a denial of service (application crash) by leveraging the use of shared memory and accessing (1) an Atomics object or (2) a SharedArrayBuffer object.
network
low complexity
canonical opensuse mozilla oracle CWE-119
5.0
2015-08-16 CVE-2015-4483 Permissions, Privileges, and Access Controls vulnerability in multiple products
Mozilla Firefox before 40.0 allows man-in-the-middle attackers to bypass a mixed-content protection mechanism via a feed: URL in a POST request.
4.3