Lucene search

K
cve[email protected]CVE-2015-7221
HistoryDec 16, 2015 - 11:59 a.m.

CVE-2015-7221

2015-12-1611:59:19
CWE-119
web.nvd.nist.gov
44
cve-2015-7221
buffer overflow
nsdeque
growcapacity
mozilla firefox
nvd
denial of service

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.027

Percentile

90.5%

Buffer overflow in the nsDeque::GrowCapacity function in xpcom/glue/nsDeque.cpp in Mozilla Firefox before 43.0 might allow remote attackers to cause a denial of service or possibly have unspecified other impact by triggering a deque size change.

Affected configurations

NVD
Node
mozillafirefoxRange42.0
Node
fedoraprojectfedoraMatch22
OR
fedoraprojectfedoraMatch23
Node
opensuseleapMatch42.1
OR
opensuseopensuseMatch13.1
OR
opensuseopensuseMatch13.2
VendorProductVersionCPE
mozillafirefoxcpe:/a:mozilla:firefox::::

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

7.9

Confidence

High

EPSS

0.027

Percentile

90.5%