CVE-2015-4484: Buffer Overflow
The js::jit::AssemblerX86Shared::lockaddl function in the JavaScript implementation in Mozilla Firefox before 40.0 and Firefox ESR 38.x before 38.2 allows remote attackers to cause a denial of service (application crash) by leveraging the use of shared memory and accessing (1) an Atomics object or (2) a SharedArrayBuffer object.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4484?
CVE-2015-4484 has a severity rating that may lead to denial of service due to application crashes.
How do I fix CVE-2015-4484?
To fix CVE-2015-4484, update Mozilla Firefox to version 40.0 or later, or update Firefox ESR to version 38.2 or later.
Which versions of Firefox are affected by CVE-2015-4484?
CVE-2015-4484 affects Mozilla Firefox versions before 40.0 and Firefox ESR versions before 38.2.
How does CVE-2015-4484 affect system stability?
CVE-2015-4484 can cause application crashes, leading to potential instability in systems using affected versions of Firefox.
Is there a workaround for CVE-2015-4484?
There are no known workarounds for CVE-2015-4484; the recommended solution is to update to the latest Firefox version.