CVE-2015-4479: Integer Overflow
Multiple integer overflows in libstagefright in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allow remote attackers to execute arbitrary code via a crafted saio chunk in MPEG-4 video data.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4479?
CVE-2015-4479 is considered a critical vulnerability due to its potential to allow remote attackers to execute arbitrary code.
How do I fix CVE-2015-4479?
To mitigate CVE-2015-4479, update Mozilla Firefox to version 40.0 or later, or the ESR version to 38.2 or later.
Which versions of Mozilla Firefox are affected by CVE-2015-4479?
CVE-2015-4479 affects Firefox versions before 40.0 and Firefox ESR versions before 38.2.
What types of attacks can exploit CVE-2015-4479?
CVE-2015-4479 can be exploited via crafted MPEG-4 video data, specifically through malicious saio chunks.
Who is impacted by CVE-2015-4479?
Users of Mozilla Firefox versions prior to 40.0 and Firefox ESR versions prior to 38.2 are at risk from CVE-2015-4479.