Reuse memory corruption vulnerability after Mozilla Firefox is released (CVE-2015-4492)
Reuse memory corruption vulnerability after Mozilla Firefox is released (CVE-2015-4492)
Release date:
Updated on:
Affected Systems:
Mozilla Firefox <40
Mozilla Firefox & lt; 38.2
Description:
Bugtraq id: 76297
CVE (CAN) ID: CVE-2015-4492
Mozilla Firefox is an open-source web browser that uses the Gecko engine.
Mozilla Firefox's implementation of XMLHttpRequest: Open () has the re-exploitation of Memory Corruption Vulnerability after being released. Attackers can exploit this vulnerability to execute arbitrary code in the context of the affected application.
<* Source: Looben Yang
*>
Suggestion:
Vendor patch:
Mozilla
-------
The vendor has released a patch to fix this security problem. Please download it from the vendor's homepage:
Https://www.mozilla.org/en-US/security/advisories/mfsa2015-92/
Manually install Firefox Flash plug-in Ubuntu 14.04
Replacement of Firefox in Ubuntu
Use apt-get to install FireFox and ThunderBird In Debian Linux
Stable Firefox 29 version released-how to install
Mozilla Firefox 31.0 official release and download
Firefox details: click here
Firefox: click here
This article permanently updates the link address: