CVE
- Id
- 81769
- CVE No.
- CVE-2015-4492
- Status
- Candidate
- Description
- Use-after-free vulnerability in the XMLHttpRequest::Open implementation in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 might allow remote attackers to execute arbitrary code via a SharedWorker object that makes recursive calls to the open method of an XMLHttpRequest object.
- Phase
- Assigned (20150610)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
734144 | 81769 | CVE-2015-4492 | CONFIRM:http://www.mozilla.org/security/announce/2015/mfsa2015-92.html | View |
734145 | 81769 | CVE-2015-4492 | CONFIRM:https://bugzilla.mozilla.org/show_bug.cgi?id=1185820 | View |
734146 | 81769 | CVE-2015-4492 | CONFIRM:http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html | View |
734147 | 81769 | CVE-2015-4492 | DEBIAN:DSA-3333 | View |
734148 | 81769 | CVE-2015-4492 | URL:http://www.debian.org/security/2015/dsa-3333 | View |
734149 | 81769 | CVE-2015-4492 | GENTOO:GLSA-201605-06 | View |
734150 | 81769 | CVE-2015-4492 | URL:https://security.gentoo.org/glsa/201605-06 | View |
734151 | 81769 | CVE-2015-4492 | REDHAT:RHSA-2015:1586 | View |
734152 | 81769 | CVE-2015-4492 | URL:http://rhn.redhat.com/errata/RHSA-2015-1586.html | View |
734153 | 81769 | CVE-2015-4492 | SUSE:openSUSE-SU-2015:1389 | View |
734154 | 81769 | CVE-2015-4492 | URL:http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00014.html | View |
734155 | 81769 | CVE-2015-4492 | SUSE:openSUSE-SU-2015:1390 | View |
734156 | 81769 | CVE-2015-4492 | URL:http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00015.html | View |
734157 | 81769 | CVE-2015-4492 | SUSE:SUSE-SU-2015:2081 | View |
734158 | 81769 | CVE-2015-4492 | URL:http://lists.opensuse.org/opensuse-security-announce/2015-11/msg00025.html | View |
734159 | 81769 | CVE-2015-4492 | SUSE:SUSE-SU-2015:1449 | View |
734160 | 81769 | CVE-2015-4492 | URL:http://lists.opensuse.org/opensuse-security-announce/2015-08/msg00021.html | View |
734161 | 81769 | CVE-2015-4492 | SUSE:openSUSE-SU-2015:1453 | View |
734162 | 81769 | CVE-2015-4492 | URL:http://lists.opensuse.org/opensuse-updates/2015-08/msg00030.html | View |
734163 | 81769 | CVE-2015-4492 | SUSE:openSUSE-SU-2015:1454 | View |
734164 | 81769 | CVE-2015-4492 | URL:http://lists.opensuse.org/opensuse-updates/2015-08/msg00031.html | View |
734165 | 81769 | CVE-2015-4492 | SUSE:SUSE-SU-2015:1528 | View |
734166 | 81769 | CVE-2015-4492 | URL:http://lists.opensuse.org/opensuse-security-announce/2015-09/msg00016.html | View |
734167 | 81769 | CVE-2015-4492 | UBUNTU:USN-2702-1 | View |
734168 | 81769 | CVE-2015-4492 | URL:http://www.ubuntu.com/usn/USN-2702-1 | View |
734169 | 81769 | CVE-2015-4492 | UBUNTU:USN-2702-2 | View |
734170 | 81769 | CVE-2015-4492 | URL:http://www.ubuntu.com/usn/USN-2702-2 | View |
734171 | 81769 | CVE-2015-4492 | UBUNTU:USN-2702-3 | View |
734172 | 81769 | CVE-2015-4492 | URL:http://www.ubuntu.com/usn/USN-2702-3 | View |
734173 | 81769 | CVE-2015-4492 | BID:76297 | View |
734174 | 81769 | CVE-2015-4492 | URL:http://www.securityfocus.com/bid/76297 | View |
734175 | 81769 | CVE-2015-4492 | SECTRACK:1033247 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
9275 | JVNDB-2015-004595 | EMC Documentum Content Server におけるスーパーユーザ権限を取得される脆弱性 | EMC Documentum Content Server は、dm_job オブジェクトへのアクセスに対する承認を適切に検証しないため、スーパーユーザ権限を取得される脆弱性が存在します。 | CVE-2015-4544 | 81769 | 9 | http://jvndb.jvn.jp/ja/contents/2015/JVNDB-2015-004595.html | View |