The nsZipArchive::BuildFileList function in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to have an unspecified impact via a crafted ZIP archive.
                
            References
                    Configurations
                    Configuration 1 (hide)
                                
                                
  | 
                        
Configuration 2 (hide)
                                
                                
  | 
                        
Configuration 3 (hide)
                                
                                
  | 
                        
Configuration 4 (hide)
                                
                                
  | 
                        
Configuration 5 (hide)
                                
                                
  | 
                        
Information
                Published : 2015-07-05 19:01
Updated : 2016-12-27 18:59
NVD link : CVE-2015-2736
Mitre link : CVE-2015-2736
JSON object : View
CWE
                
                    
                        
                        CWE-17
                        
            DEPRECATED: Code
Products Affected
                mozilla
- firefox_esr
 - thunderbird
 - firefox
 
novell
- suse_linux_enterprise_server
 - suse_linux_enterprise_desktop
 - suse_linux_enterprise_software_development_kit
 
canonical
- ubuntu_linux
 
debian
- debian_linux
 
oracle
- solaris
 


