Lucene search

K
cveMozillaCVE-2015-0804
HistoryApr 01, 2015 - 10:59 a.m.

CVE-2015-0804

2015-04-0110:59:05
CWE-264
mozilla
web.nvd.nist.gov
60
cve-2015-0804
htmlsourceelement
bindtotree
mozilla firefox
remote code execution
denial of service
nvd

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

9.3

Confidence

High

EPSS

0.038

Percentile

91.9%

The HTMLSourceElement::BindToTree function in Mozilla Firefox before 37.0 does not properly constrain a data type after omitting namespace validation during certain tree-binding operations, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted HTML document containing a SOURCE element.

Affected configurations

Nvd
Node
mozillafirefoxRange36.0.4
Node
opensuseopensuseMatch13.1
OR
opensuseopensuseMatch13.2
Node
canonicalubuntu_linuxMatch12.04lts
OR
canonicalubuntu_linuxMatch14.04lts
OR
canonicalubuntu_linuxMatch14.10
VendorProductVersionCPE
mozillafirefoxcpe:/a:mozilla:firefox::::

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

9.3

Confidence

High

EPSS

0.038

Percentile

91.9%