CVE

Id
84496  
CVE No.
CVE-2015-7219  
Status
Candidate  
Description
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a malformed PushPromise frame that triggers decompressed-buffer length miscalculation and incorrect memory allocation.  
Phase
Assigned (20150916)  
Votes
None (candidate not yet proposed)  
Comments