CVE-2015-4487: Buffer Overflow
The nsTSubstring::ReplacePrep function in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via unknown vectors, related to an "overflow."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-4487?
CVE-2015-4487 has been classified as a high severity vulnerability due to its potential to cause denial of service through memory corruption.
How do I fix CVE-2015-4487?
To fix CVE-2015-4487, update your Mozilla Firefox or Firefox ESR to the latest version as recommended by Mozilla.
What versions are affected by CVE-2015-4487?
CVE-2015-4487 affects Mozilla Firefox versions prior to 40.0, Firefox ESR 38.x before 38.2, and Firefox OS prior to 2.2.
What types of impacts can CVE-2015-4487 cause?
CVE-2015-4487 can lead to denial of service and possible unspecified impacts due to memory corruption.
Is CVE-2015-4487 exploitable remotely?
Yes, CVE-2015-4487 can potentially be exploited by remote attackers under certain conditions.