CVE Vulnerabilities

CVE-2015-7204

Published: Dec 16, 2015 | Modified: Apr 12, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
6.8 MEDIUM
AV:N/AC:M/Au:N/C:P/I:P/A:P
RedHat/V2
5.1 MODERATE
AV:N/AC:H/Au:N/C:P/I:P/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Mozilla Firefox before 43.0 does not properly store the properties of unboxed objects, which allows remote attackers to execute arbitrary code via crafted JavaScript variable assignments.

Affected Software

NameVendorStart VersionEnd Version
LeapOpensuse42.1 (including)42.1 (including)
OpensuseOpensuse13.1 (including)13.1 (including)
OpensuseOpensuse13.2 (including)13.2 (including)
FirefoxUbuntudevel*
FirefoxUbuntuprecise*
FirefoxUbuntutrusty*
FirefoxUbuntuupstream*
FirefoxUbuntuvivid*
FirefoxUbuntuwily*

References