CVE
- Id
- 78091
- CVE No.
- CVE-2015-0828
- Status
- Candidate
- Description
- Double free vulnerability in the nsXMLHttpRequest::GetResponse function in Mozilla Firefox before 36.0, when a nonstandard memory allocator is used, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via crafted JavaScript code that makes an XMLHttpRequest call with zero bytes of data.
- Phase
- Assigned (20150107)
- Votes
- None (candidate not yet proposed)
- Comments