CVE-2015-0804
01.04.2015, 10:59
The HTMLSourceElement::BindToTree function in Mozilla Firefox before 37.0 does not properly constrain a data type after omitting namespace validation during certain tree-binding operations, which allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free) via a crafted HTML document containing a SOURCE element.Enginsight
Vendor | Product | Version |
---|---|---|
mozilla | firefox | 𝑥 ≤ 36.0.4 |
opensuse | opensuse | 13.1 |
opensuse | opensuse | 13.2 |
canonical | ubuntu_linux | 12.04 |
canonical | ubuntu_linux | 14.04 |
canonical | ubuntu_linux | 14.10 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References