CVE-2015-0824: Buffer Overflow
The mozilla::layers::BufferTextureClient::AllocateForSurface function in Mozilla Firefox before 36.0 allows remote attackers to cause a denial of service (out-of-bounds write of zero values, and application crash) via vectors that trigger use of DrawTarget and the Cairo library for image drawing.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-0824?
CVE-2015-0824 has been classified with medium severity due to its potential to cause denial of service by crashing the application.
How do I fix CVE-2015-0824?
To fix CVE-2015-0824, users should update Mozilla Firefox to version 36.0 or later.
What versions of Mozilla Firefox are affected by CVE-2015-0824?
CVE-2015-0824 affects all versions of Mozilla Firefox prior to 36.0.
What is the impact of CVE-2015-0824?
CVE-2015-0824 can lead to an out-of-bounds write that results in application crashes, causing a denial of service.
How can I determine if my system is vulnerable to CVE-2015-0824?
To determine if your system is vulnerable to CVE-2015-0824, check if you are running a version of Firefox older than 36.0.