Lucene search

K
cvelistMozillaCVELIST:CVE-2015-0827
HistoryFeb 25, 2015 - 11:00 a.m.

CVE-2015-0827

2015-02-2511:00:00
mozilla
www.cve.org
8

AI Score

9.5

Confidence

High

EPSS

0.006

Percentile

77.9%

Heap-based buffer overflow in the mozilla::gfx::CopyRect function in Mozilla Firefox before 36.0, Firefox ESR 31.x before 31.5, and Thunderbird before 31.5 allows remote attackers to obtain sensitive information from uninitialized process memory via a malformed SVG graphic.

References