First published: Mon Jul 06 2015(Updated: )
Last updated 24 July 2024
Credit: security@mozilla.org security@mozilla.org security@mozilla.org
Affected Software | Affected Version | How to fix |
---|---|---|
debian/icedove | ||
debian/iceweasel | ||
SUSE Linux Enterprise Software Development Kit | =12.0 | |
SUSE Linux Enterprise Desktop | =12.0 | |
SUSE Linux Enterprise Server | =11-sp4 | |
SUSE Linux Enterprise Server | =12.0 | |
Oracle Solaris SPARC | =11.3 | |
Mozilla Firefox | =31.0 | |
Mozilla Firefox | =31.1.0 | |
Mozilla Firefox | =31.1.1 | |
Mozilla Firefox | =31.3.0 | |
Mozilla Firefox | =31.5.1 | |
Mozilla Firefox | =31.5.2 | |
Mozilla Firefox | =31.5.3 | |
Mozilla Firefox | =38.0 | |
Mozilla Firefox ESR | =31.1 | |
Mozilla Firefox ESR | =31.2 | |
Mozilla Firefox ESR | =31.3 | |
Mozilla Firefox ESR | =31.4 | |
Mozilla Firefox ESR | =31.5 | |
Mozilla Firefox ESR | =31.6.0 | |
Mozilla Firefox ESR | =31.7.0 | |
Mozilla Firefox | <=38.1.0 | |
Mozilla Thunderbird | <=38.0.1 | |
Mozilla Firefox ESR | =31.0 | |
Mozilla Firefox ESR | =31.1.0 | |
Mozilla Firefox ESR | =31.1.1 | |
Mozilla Firefox ESR | =31.3.0 | |
Mozilla Firefox ESR | =31.5.1 | |
Mozilla Firefox ESR | =31.5.2 | |
Mozilla Firefox ESR | =31.5.3 | |
Mozilla Firefox ESR | =38.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2015-2725 is a vulnerability in the browser engine of Mozilla Firefox, Firefox ESR, and Thunderbird that allows remote attackers to cause denial of service or execute arbitrary code.
Mozilla Firefox versions before 39.0, Firefox ESR versions before 38.1, and Thunderbird versions before 38.1 are affected by CVE-2015-2725.
CVE-2015-2725 is considered a critical vulnerability with a severity score of 10.
To fix CVE-2015-2725, update to Mozilla Firefox 39.0 or later, Firefox ESR 38.1 or later, or Thunderbird 38.1 or later.
You can find more information about CVE-2015-2725 in the following references: [http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00025.html](http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00025.html), [http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00033.html](http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00033.html), [http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00034.html](http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00034.html)