[Forgot Password]
Login  Register Subscribe

30389

 
 

423868

 
 

247085

 
 

909

 
 

194218

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

Information disclosure vulnerability in the asm.js implementation in Mozilla Firefox via a crafted JavaScript (Mac OS X)

ID: oval:org.secpod.oval:def:24723Date: (C)2015-06-08   (M)2023-11-18
Class: VULNERABILITYFamily: macos




The host is installed with Mozilla Firefox before 38.0 and is prone to an information disclosure vulnerability. A flaw is present in the application, which does not properly determine heap lengths during identification of cases in which bounds checking may be safely skipped. Successful exploitation could allow attackers to trigger out-of-bounds write operations and possibly execute arbitrary code, or trigger out-of-bounds read operations and possibly obtain sensitive information from process memory.

Platform:
Apple Mac OS 14
Apple Mac OS 13
Apple Mac OS 12
Apple Mac OS 11
Apple Mac OS X 10.15
Apple Mac OS X 10.14
Apple Mac OS X 10.13
Apple Mac OS X 10.11
Apple Mac OS X 10.12
Product:
Mozilla Firefox
Reference:
CVE-2015-2712
CVE    1
CVE-2015-2712
CPE    2
cpe:/a:mozilla:firefox
cpe:/a:mozilla:firefox:37.0.2

© SecPod Technologies