[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248364

 
 

909

 
 

195388

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2016-1931Date: (C)2016-02-09   (M)2024-03-27


Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to uninitialized memory encountered during brotli data compression, and other vectors.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V3 Severity:CVSS V2 Severity:
CVSS Score : 10.0CVSS Score : 10.0
Exploit Score: 3.9Exploit Score: 10.0
Impact Score: 6.0Impact Score: 10.0
 
CVSS V3 Metrics:CVSS V2 Metrics:
Attack Vector: NETWORKAccess Vector: NETWORK
Attack Complexity: LOWAccess Complexity: LOW
Privileges Required: NONEAuthentication: NONE
User Interaction: NONEConfidentiality: COMPLETE
Scope: CHANGEDIntegrity: COMPLETE
Confidentiality: HIGHAvailability: COMPLETE
Integrity: HIGH 
Availability: HIGH 
  
Reference:
SECTRACK-1034825
BID-81953
GLSA-201605-06
USN-2880-1
USN-2880-2
http://www.mozilla.org/security/announce/2016/mfsa2016-01.html
https://bugzilla.mozilla.org/show_bug.cgi?id=1180064
https://bugzilla.mozilla.org/show_bug.cgi?id=1186973
https://bugzilla.mozilla.org/show_bug.cgi?id=1206675
https://bugzilla.mozilla.org/show_bug.cgi?id=1207298
https://bugzilla.mozilla.org/show_bug.cgi?id=1209358
https://bugzilla.mozilla.org/show_bug.cgi?id=1209365
https://bugzilla.mozilla.org/show_bug.cgi?id=1209366
https://bugzilla.mozilla.org/show_bug.cgi?id=1209368
https://bugzilla.mozilla.org/show_bug.cgi?id=1209546
https://bugzilla.mozilla.org/show_bug.cgi?id=1222015
https://bugzilla.mozilla.org/show_bug.cgi?id=1229825
https://bugzilla.mozilla.org/show_bug.cgi?id=1231121
https://bugzilla.mozilla.org/show_bug.cgi?id=1234576
openSUSE-SU-2016:0306
openSUSE-SU-2016:0309

CPE    2
cpe:/o:opensuse:opensuse:13.1
cpe:/a:mozilla:firefox:43.0.4
CWE    1
CWE-119
OVAL    7
oval:org.secpod.oval:def:32834
oval:org.secpod.oval:def:32835
oval:org.secpod.oval:def:2102799
oval:org.secpod.oval:def:52681
...

© SecPod Technologies