CVE-2015-2740: Buffer Overflow
Buffer overflow in the nsXMLHttpRequest::AppendToResponseText function ...
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-2740?
The severity of CVE-2015-2740 is critical with a severity value of 10.
Which software versions are affected by CVE-2015-2740?
Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, Thunderbird before 38.1.
How can CVE-2015-2740 be exploited?
It can be exploited through buffer overflow in the nsXMLHttpRequest::AppendToResponseText function.
What is the remedy for CVE-2015-2740?
Upgrade to Mozilla Firefox 39.0 or higher, Thunderbird 31.8 or higher.
Where can I find more information about CVE-2015-2740?
You can find more information about CVE-2015-2740 at the following references: [http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00025.html](http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00025.html), [http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.html](http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.html), [http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00033.html](http://lists.opensuse.org/opensuse-security-announce/2015-07/msg00033.html).