CVE-2015-5962: Medium severity mozilla firefox os vulnerability
Integer signedness error in the SharedBufferManagerParent::RecvAllocateGrallocBuffer function in the buffer-management implementation in the graphics layer in Mozilla Firefox OS before 2.2 might allow attackers to cause a denial of service (memory corruption) via a negative value of a size parameter.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-5962?
CVE-2015-5962 is considered a medium severity vulnerability that may lead to denial of service through memory corruption.
Which versions of Mozilla Firefox OS are affected by CVE-2015-5962?
CVE-2015-5962 affects Mozilla Firefox OS versions prior to 2.2, including 2.1.0 and earlier.
How do I fix CVE-2015-5962?
To resolve CVE-2015-5962, update your Mozilla Firefox OS to version 2.2 or later.
What type of attack does CVE-2015-5962 facilitate?
CVE-2015-5962 enables attackers to cause a denial of service attack through a memory corruption vulnerability.
Can CVE-2015-5962 be exploited remotely?
Yes, CVE-2015-5962 can potentially be exploited remotely if an attacker manipulates the size parameter.