CVE Vulnerabilities

CVE-2015-4488

Published: Aug 16, 2015 | Modified: Oct 22, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
5.1 MODERATE
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM

Use-after-free vulnerability in the StyleAnimationValue class in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 allows remote attackers to have an unspecified impact by leveraging a StyleAnimationValue::operator self assignment.

Affected Software

Name Vendor Start Version End Version
Solaris Oracle 11.3 (including) 11.3 (including)
Red Hat Enterprise Linux 5 RedHat firefox-0:38.2.0-4.el5_11 *
Red Hat Enterprise Linux 5 RedHat thunderbird-0:38.2.0-4.el5_11 *
Red Hat Enterprise Linux 6 RedHat firefox-0:38.2.0-4.el6_7 *
Red Hat Enterprise Linux 6 RedHat thunderbird-0:38.2.0-4.el6_7 *
Red Hat Enterprise Linux 7 RedHat firefox-0:38.2.0-4.el7_1 *
Red Hat Enterprise Linux 7 RedHat thunderbird-0:38.2.0-1.ael7b_1 *
Firefox Ubuntu devel *
Firefox Ubuntu precise *
Firefox Ubuntu trusty *
Firefox Ubuntu upstream *
Firefox Ubuntu vivid *
Thunderbird Ubuntu devel *
Thunderbird Ubuntu precise *
Thunderbird Ubuntu trusty *
Thunderbird Ubuntu upstream *
Thunderbird Ubuntu vivid *

References