V
Scaner-VS
HomeCatalogSourcesCWECAPECATT&CKMitigationsProductsVendorsDocs
CVE-2015-2735
DEB
Medium

nsZipArchive.cpp in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses un…

CVSS
6.8
Medium
EPSS
0.04
p88
Published
2015-01-01
Updated
2015-01-01
Description

nsZipArchive.cpp in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 accesses unintended memory locations, which allows remote attackers to have an unspecified impact via a crafted ZIP archive.

Tags · CWE
CWE-17
Affected products
Suse_linux_enterprise_software_development_kitUbuntu_linuxDebian_linuxSuse_linux_enterprise_desktopSuse_linux_enterprise_server
CVSS vector
AV:N/AC:M/Au:N/C:P/I:P/A:P
Timeline
2015-01-01
Published
2015-01-01
Updated
CVSS 3.1 breakdown
Attack Vector
AV: N
Network (N)
Attack Complexity
AC: M
Medium
Authentication
Au: N
None (N)
Confidentiality Impact
C: P
Partial
Integrity Impact
I: P
Partial
Availability Impact
A: P
Partial
Exploit indicators
EPSS
0.038 · p88
Known exploited (KEV)
No
Known exploits — Сканер-ВС
No Сканер-ВС checks registered for this vulnerability yet.
Affected products
ProductVendorStatus
firefoxTracked
firefoxTracked
firefoxTracked
firefoxTracked
firefoxTracked
firefoxTracked
icedoveTracked
icedoveTracked
iceweaselTracked
iceweaselTracked
thunderbirdTracked
thunderbirdTracked
thunderbirdTracked
thunderbirdTracked
thunderbirdTracked
thunderbirdTracked
debian_linux*Tracked
firefox*Tracked
firefox*Tracked
firefox_esr*Tracked
Showing first 20 of 26
Source databases
DEB
CVE
RED
UBU