CVE-2015-4510

CVSS v2.0 6.8 (Medium)
68% Progress
EPSS 8.16 % (94th)
8.16% Progress
Affected Products 1
Advisories 3

Race condition in the WorkerPrivate::NotifyFeatures function in Mozilla Firefox before 41.0 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free and application crash) by leveraging improper interaction between shared workers and the IndexedDB implementation.

Weaknesses
CWE-362
Concurrent Execution using Shared Resource with Improper Synchronization ('Race Condition')
CWE-NVD-Other
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2015-09-24 04:59:13
(9 years ago)
Updated Date
2016-12-22 02:59:55
(7 years ago)

Affected Products

Loading...
Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox 40.0.3 and prior versions cpe:2.3:a:mozilla:firefox <= 40.0.3
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...