CVE-2015-7176
Publication date 22 September 2015
Last updated 24 July 2024
Ubuntu priority
The AnimationThread function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 uses an incorrect argument to the sscanf function, which might allow remote attackers to cause a denial of service (stack-based buffer overflow and application crash) or possibly have unspecified other impact via unknown vectors.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | ||
14.04 LTS trusty |
Fixed 41.0+build3-0ubuntu0.14.04.1
|
|
thunderbird | ||
14.04 LTS trusty |
Fixed 1:38.3.0+build1-0ubuntu0.14.04.1
|
|
References
Related Ubuntu Security Notices (USN)
- USN-2754-1
- Thunderbird vulnerabilities
- 5 October 2015
- USN-2743-1
- Firefox vulnerabilities
- 22 September 2015