CVE-2015-2706
published 2015-04-27CVE-2015-2706: Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or…
PriorityP434medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
2.59%
83.7th percentile
Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.
Affected
2 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 37.0.1 | — |
| mozilla | firefox | >= 0 < 37.0.2+build1-0ubuntu0.14.04.1 | 37.0.2+build1-0ubuntu0.14.04.1 |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv6.8MEDIUM
vendor_redhat6.8MEDIUM
vendor_ubuntu6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-xwcx-vhr3-5qc7: Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37
ghsa_unreviewed·2022-05-17
CVE-2015-2706 [MEDIUM] CWE-362 GHSA-xwcx-vhr3-5qc7: Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37
Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.
OSV
firefox vulnerability
osv·2015-04-24·CVSS 6.8
CVE-2015-2706 [MEDIUM] firefox vulnerability
firefox vulnerability
Robert Kaiser discovered a use-after-free during plugin initialization in
some circumstances. If a user were tricked in to opening a specially
crafted website, an attacker could potentially exploit this to cause a
denial of service via application crash or execute arbitrary code with the
privileges of the user invoking Firefox. (CVE-2015-2706)
OSV
CVE-2015-2706: Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37
osv·2015-04-21·CVSS 6.8
CVE-2015-2706 [MEDIUM] CVE-2015-2706: Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37
Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.
Ubuntu
Firefox vulnerability
vendor_ubuntu·2015-04-24·CVSS 6.8
CVE-2015-2706 [MEDIUM] Firefox vulnerability
Title: Firefox vulnerability
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Robert Kaiser discovered a use-after-free during plugin initialization in
some circumstances. If a user were tricked in to opening a specially
crafted website, an attacker could potentially exploit this to cause a
denial of service via application crash or execute arbitrary code with the
privileges of the user invoking Firefox. (CVE-2015-2706)
Instructions: After a standard system update you need to restart Firefox to make
all the necessary changes.
Red Hat
Mozilla: Memory corruption during failed plugin initialization (MFSA 2015-45)
vendor_redhat·2015-04-20·CVSS 6.8
CVE-2015-2706 [MEDIUM] CWE-416 Mozilla: Memory corruption during failed plugin initialization (MFSA 2015-45)
Mozilla: Memory corruption during failed plugin initialization (MFSA 2015-45)
Race condition in the AsyncPaintWaitEvent::AsyncPaintWaitEvent function in Mozilla Firefox before 37.0.2 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted plugin that does not properly complete initialization.
Statement: Not vulnerable. This issue does not affect the version of Firefox and Thunderbird package, as shipped with Red Hat Enterprise Linux 5, 6 and 7.
Package: firefox (Red Hat Enterprise Linux 5) - Not affected
Package: thunderbird (Red Hat Enterprise Linux 5) - Not affected
Package: firefox (Red Hat Enterprise Linux 6) - Not affected
Package: thunderbird (Red Hat Enterprise Linux 6) - Not affected
Package: firefox (Red Hat Enterprise L
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-updates/2015-04/msg00044.htmlhttp://lists.opensuse.org/opensuse-updates/2015-04/msg00046.htmlhttp://www.mozilla.org/security/announce/2015/mfsa2015-45.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://www.securityfocus.com/bid/74247http://www.securitytracker.com/id/1032171http://www.ubuntu.com/usn/USN-2571-1https://bugzilla.mozilla.org/show_bug.cgi?id=1141081https://security.gentoo.org/glsa/201512-10http://lists.opensuse.org/opensuse-updates/2015-04/msg00044.htmlhttp://lists.opensuse.org/opensuse-updates/2015-04/msg00046.htmlhttp://www.mozilla.org/security/announce/2015/mfsa2015-45.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://www.securityfocus.com/bid/74247http://www.securitytracker.com/id/1032171http://www.ubuntu.com/usn/USN-2571-1https://bugzilla.mozilla.org/show_bug.cgi?id=1141081https://security.gentoo.org/glsa/201512-10
2015-04-27
Published