CVE-2015-2713
CVE-2015-2713
Use-after-free vulnerability in the SetBreaks function in Mozilla Firefox before 38.0, Firefox ESR 31.x before 31.7, and Thunderbird before 31.7 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a document containing crafted text in conjunction with a Cascading Style Sheets (CSS) token sequence containing properties related to vertical text.
Productos afectados
n/a · n/a¿Quieres saber si tu infraestructura está expuesta a esto?
Hablar con TrueHacking →Referencias
http://lists.opensuse.org/opensuse-security-announce/2015-05/msg00012.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-05/msg00054.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-06/msg00000.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.htmlhttp://lists.opensuse.org/opensuse-updates/2015-05/msg00036.htmlhttp://rhn.redhat.com/errata/RHSA-2015-0988.htmlhttp://rhn.redhat.com/errata/RHSA-2015-1012.htmlhttps://bugzilla.mozilla.org/show_bug.cgi?id=1153478https://security.gentoo.org/glsa/201605-06https://www.mozilla.org/en-US/security/known-vulnerabilities/thunderbird/#thunderbird31.7http://www.debian.org/security/2015/dsa-3260http://www.debian.org/security/2015/dsa-3264