CVE-2015-7175: Buffer Overflow
The XULContentSinkImpl::AddText function in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3 might allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly have unspecified other impact via unknown vectors, related to an "overflow."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2015-7175?
CVE-2015-7175 is classified as a denial of service vulnerability due to memory corruption and potential application crashes.
How do I fix CVE-2015-7175?
To address CVE-2015-7175, upgrade Mozilla Firefox to version 41.0 or later, or to Firefox ESR version 38.3 or later.
What software versions are affected by CVE-2015-7175?
CVE-2015-7175 affects Mozilla Firefox versions before 41.0 and Firefox ESR versions 38.x before 38.3.
What impact can CVE-2015-7175 have on my system?
CVE-2015-7175 may allow remote attackers to cause memory corruption leading to application crashes.
Is there a known workaround for CVE-2015-7175?
There are no documented workarounds for CVE-2015-7175; upgrading to a patched version is recommended.