CVE-2015-4500
published 2015-09-24CVE-2015-4500: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow remote attackers to cause a…
PriorityP434high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
4.76%
90.9th percentile
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Affected
11 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 40.0.3 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | >= 0 < 41.0+build3-0ubuntu0.14.04.1 | 41.0+build3-0ubuntu0.14.04.1 |
| mozilla | firefox | >= 0 < 41.0.1+build2-0ubuntu0.14.04.1 | 41.0.1+build2-0ubuntu0.14.04.1 |
| mozilla | thunderbird | >= 0 < 1:38.3.0+build1-0ubuntu0.14.04.1 | 1:38.3.0+build1-0ubuntu0.14.04.1 |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
osv7.5HIGH
vendor_redhat7.5HIGH
vendor_ubuntu7.5HIGH
vendor_cisco6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-w7v9-gmfx-55cf: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41
ghsa_unreviewed·2022-05-17
CVE-2015-4500 [HIGH] CWE-119 GHSA-w7v9-gmfx-55cf: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
OSV
thunderbird vulnerabilities
osv·2015-10-05·CVSS 7.5
CVE-2015-4500 [HIGH] thunderbird vulnerabilities
thunderbird vulnerabilities
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, and Cameron McCormack discovered multiple memory
safety issues in Thunderbird. If a user were tricked in to opening a
specially crafted message, an attacker could potentially exploit these to
cause a denial of service via application crash, or execute arbitrary code
with the privileges of the user invoking Thunderbird. (CVE-2015-4500)
Khalil Zhani discovered a buffer overflow when parsing VP9 content in some
circumstances. If a user were tricked in to opening a specially crafted
message, an attacker could potentially exploit this to cause a denial of
service via application crash, or execute arbitrary code with the
privileges of the user invoking Thunderbird. (CVE-2
OSV
firefox regression
osv·2015-10-05·CVSS 7.5
[HIGH] firefox regression
firefox regression
USN-2743-1 fixed vulnerabilities in Firefox. After upgrading, some users
reported problems with bookmark creation and crashes in some
circumstances. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, Cameron McCormack, Bob Clary and Randell Jesup
discovered multiple memory safety issues in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Firefox. (CVE-2015-4500, CVE-2015-4501)
André Bargull discovered that when a web page creates a scripted pro
OSV
unity-firefox-extension, webapps-greasemonkey, webaccounts-browser-extension update
osv·2015-09-24·CVSS 7.5
[HIGH] unity-firefox-extension, webapps-greasemonkey, webaccounts-browser-extension update
unity-firefox-extension, webapps-greasemonkey, webaccounts-browser-extension update
USN-2743-1 fixed vulnerabilities in Firefox. Future Firefox updates will
require all addons be signed and unity-firefox-extension, webapps-greasemonkey
and webaccounts-browser-extension will not go through the signing process.
Because these addons currently break search engine installations (LP:
#1069793), this update permanently disables the addons by removing them from
the system.
We apologize for any inconvenience.
Original advisory details:
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, Cameron McCormack, Bob Clary and Randell Jesup
discovered multiple memory safety issues in Firefox. If a user were
tricked in to opening a specially crafted website, a
OSV
ubufox update
osv·2015-09-22·CVSS 7.5
[HIGH] ubufox update
ubufox update
USN-2743-1 fixed vulnerabilities in Firefox. This update provides the
corresponding update for Ubufox.
Original advisory details:
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, Cameron McCormack, Bob Clary and Randell Jesup
discovered multiple memory safety issues in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Firefox. (CVE-2015-4500, CVE-2015-4501)
André Bargull discovered that when a web page creates a scripted proxy
for the window with a handler defined a certain way, a reference to the
inner window will be passed, rather than tha
OSV
firefox vulnerabilities
osv·2015-09-22·CVSS 7.5
CVE-2015-4500 [HIGH] firefox vulnerabilities
firefox vulnerabilities
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, Cameron McCormack, Bob Clary and Randell Jesup
discovered multiple memory safety issues in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Firefox. (CVE-2015-4500, CVE-2015-4501)
André Bargull discovered that when a web page creates a scripted proxy
for the window with a handler defined a certain way, a reference to the
inner window will be passed, rather than that of the outer window.
(CVE-2015-4502)
Felix Gröbert discovered an out-of-bounds read in the QCMS color
management librar
OSV
CVE-2015-4500: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41
osv·2015-09-22·CVSS 7.5
CVE-2015-4500 [HIGH] CVE-2015-4500: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2015-10-05·CVSS 7.5
CVE-2015-4500 [HIGH] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, and Cameron McCormack discovered multiple memory
safety issues in Thunderbird. If a user were tricked in to opening a
specially crafted message, an attacker could potentially exploit these to
cause a denial of service via application crash, or execute arbitrary code
with the privileges of the user invoking Thunderbird. (CVE-2015-4500)
Khalil Zhani discovered a buffer overflow when parsing VP9 content in some
circumstances. If a user were tricked in to opening a specially crafted
message, an attacker could potentially exploit this to cause a denial of
service via application crash, or execute arbitra
Ubuntu
Firefox regression
vendor_ubuntu·2015-10-05·CVSS 7.5
[HIGH] Firefox regression
Title: Firefox regression
Summary: USN-2743-1 introduced a regression in Firefox.
USN-2743-1 fixed vulnerabilities in Firefox. After upgrading, some users
reported problems with bookmark creation and crashes in some
circumstances. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, Cameron McCormack, Bob Clary and Randell Jesup
discovered multiple memory safety issues in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Firefox. (CVE-2015-4500, CVE-2015-4501)
Andr
Ubuntu
Unity Integration for Firefox, Unity Websites Integration and Ubuntu Online Accounts extension update
vendor_ubuntu·2015-09-24·CVSS 7.5
[HIGH] Unity Integration for Firefox, Unity Websites Integration and Ubuntu Online Accounts extension update
Title: Unity Integration for Firefox, Unity Websites Integration and Ubuntu Online Accounts extension update
Summary: This update provides compatible packages for Firefox 41
USN-2743-1 fixed vulnerabilities in Firefox. Future Firefox updates will
require all addons be signed and unity-firefox-extension, webapps-greasemonkey
and webaccounts-browser-extension will not go through the signing process.
Because these addons currently break search engine installations (LP:
#1069793), this update permanently disables the addons by removing them from
the system.
We apologize for any inconvenience.
Original advisory details:
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, Cameron McCormack, Bob Clary and Randell Jesup
discovered multiple memory sa
Ubuntu
Ubufox update
vendor_ubuntu·2015-09-22·CVSS 7.5
[HIGH] Ubufox update
Title: Ubufox update
Summary: This update provides compatible packages for Firefox 41
USN-2743-1 fixed vulnerabilities in Firefox. This update provides the
corresponding update for Ubufox.
Original advisory details:
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, Cameron McCormack, Bob Clary and Randell Jesup
discovered multiple memory safety issues in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Firefox. (CVE-2015-4500, CVE-2015-4501)
André Bargull discovered that when a web page creates a scripted proxy
for the window with a handler defined a cer
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2015-09-22·CVSS 7.5
CVE-2015-4500 [HIGH] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Andrew Osmond, Olli Pettay, Andrew Sutherland, Christian Holler, David
Major, Andrew McCreight, Cameron McCormack, Bob Clary and Randell Jesup
discovered multiple memory safety issues in Firefox. If a user were
tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Firefox. (CVE-2015-4500, CVE-2015-4501)
André Bargull discovered that when a web page creates a scripted proxy
for the window with a handler defined a certain way, a reference to the
inner window will be passed, rather than that of the o
Red Hat
Mozilla: Miscellaneous memory safety hazards (MFSA 2015-96)
vendor_redhat·2015-09-22·CVSS 7.5
CVE-2015-4500 [HIGH] CWE-805 Mozilla: Miscellaneous memory safety hazards (MFSA 2015-96)
Mozilla: Miscellaneous memory safety hazards (MFSA 2015-96)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Cisco
Cisco IOS XE Cisco Discovery Protocol Packet Processing Denial of Service Vulnerability
vendor_cisco·2015-09-17·CVSS 6.1
CVE-2015-6294 [MEDIUM] CWE-399 Cisco IOS XE Cisco Discovery Protocol Packet Processing Denial of Service Vulnerability
Cisco IOS XE Cisco Discovery Protocol Packet Processing Denial of Service Vulnerability
A vulnerability in Cisco Catalyst 4500 Series Switches running Cisco IOS XE Software could allow an unauthenticated, adjacent attacker to cause a denial of service (DoS) condition on an affected device.
The vulnerability is due to improper processing of valid crafted Cisco Discovery Protocol packets. An attacker could exploit this vulnerability by sending crafted Cisco Discovery Protocol packets to be processed by an affected device. An exploit could allow the attacker to cause the software to stop functioning properly, resulting in a DoS condition on the affected device.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability, an attacker may need to acqu
Cisco
Cisco TelePresence MCU 4500 Cross-Site Request Forgery Vulnerability
vendor_cisco·2015-07-09·CVSS 6.8
CVE-2015-4257 [MEDIUM] CWE-352 Cisco TelePresence MCU 4500 Cross-Site Request Forgery Vulnerability
Cisco TelePresence MCU 4500 Cross-Site Request Forgery Vulnerability
A vulnerability in the Cisco TelePresence MCU 4500 Series could allow an unauthenticated, remote attacker to execute unwanted actions.
The vulnerability is due to insufficient cross-site request forgery (CSRF) protection. An attacker could exploit this vulnerability by tricking the user of a web application into executing an adverse action.
Cisco has confirmed the vulnerability; however, software updates are not available.
To exploit the vulnerability, the attacker may provide a link that directs a user to a malicious site and use misleading language or instructions to persuade the user to follow the provided link.
Cisco indicates through the CVSS score that functional exploit code exists; however, the code is not k
Cisco
Cisco Catalyst 4500 SNMP Polling Denial of Service Vulnerability
vendor_cisco·2015-04-02·CVSS 6.3
CVE-2015-0687 [MEDIUM] CWE-399 Cisco Catalyst 4500 SNMP Polling Denial of Service Vulnerability
Cisco Catalyst 4500 SNMP Polling Denial of Service Vulnerability
A vulnerability in the Simple Network Management Protocol (SNMP) code of Cisco Catalyst 4500 devices running Cisco IOS Software could allow an authenticated, remote attacker to cause a denial of service (DoS) condition.
The vulnerability is due to an unspecified condition that exists during SNMP polling of an affected device that is configured for Virtual Switching System (VSS) with only one switch in the VSS cluster. An authenticated, remote attacker could exploit this vulnerability to cause an affected device to crash, resulting in a DoS condition.
Cisco has confirmed the vulnerability and released software updates.
To exploit this vulnerability, an attacker must authenticate to the targeted device. This access require
No detection rules found.
No public exploits indexed.
http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00005.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-11/msg00025.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1834.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1852.htmlhttp://www.debian.org/security/2015/dsa-3365http://www.mozilla.org/security/announce/2015/mfsa2015-96.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/76816http://www.securitytracker.com/id/1033640http://www.ubuntu.com/usn/USN-2743-1http://www.ubuntu.com/usn/USN-2743-2http://www.ubuntu.com/usn/USN-2743-3http://www.ubuntu.com/usn/USN-2743-4http://www.ubuntu.com/usn/USN-2754-1https://bugzilla.mozilla.org/show_bug.cgi?id=1044077https://bugzilla.mozilla.org/show_bug.cgi?id=1152026https://bugzilla.mozilla.org/show_bug.cgi?id=1161063https://bugzilla.mozilla.org/show_bug.cgi?id=1181651https://bugzilla.mozilla.org/show_bug.cgi?id=1183153https://bugzilla.mozilla.org/show_bug.cgi?id=1186962https://bugzilla.mozilla.org/show_bug.cgi?id=1201793https://bugzilla.mozilla.org/show_bug.cgi?id=1202844http://lists.opensuse.org/opensuse-security-announce/2015-10/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00003.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00004.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00005.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-10/msg00007.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-11/msg00025.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1834.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1852.htmlhttp://www.debian.org/security/2015/dsa-3365http://www.mozilla.org/security/announce/2015/mfsa2015-96.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://www.oracle.com/technetwork/topics/security/linuxbulletinoct2015-2719645.htmlhttp://www.securityfocus.com/bid/76816http://www.securitytracker.com/id/1033640http://www.ubuntu.com/usn/USN-2743-1http://www.ubuntu.com/usn/USN-2743-2http://www.ubuntu.com/usn/USN-2743-3http://www.ubuntu.com/usn/USN-2743-4http://www.ubuntu.com/usn/USN-2754-1https://bugzilla.mozilla.org/show_bug.cgi?id=1044077https://bugzilla.mozilla.org/show_bug.cgi?id=1152026https://bugzilla.mozilla.org/show_bug.cgi?id=1161063https://bugzilla.mozilla.org/show_bug.cgi?id=1181651https://bugzilla.mozilla.org/show_bug.cgi?id=1183153https://bugzilla.mozilla.org/show_bug.cgi?id=1186962https://bugzilla.mozilla.org/show_bug.cgi?id=1201793https://bugzilla.mozilla.org/show_bug.cgi?id=1202844
2015-09-24
Published