CVE-2015-2742

Publication date 6 July 2015

Last updated 24 July 2024


Ubuntu priority

Description

Mozilla Firefox before 39.0 on OS X includes native key press information during the logging of crashes, which allows remote attackers to obtain sensitive information by leveraging access to a crash-reporting data stream.

Read the notes from the security team

Status

Package Ubuntu Release Status
firefox 15.04 vivid
Not affected
14.10 utopic
Not affected
14.04 LTS trusty Not in release
12.04 LTS precise
Not affected
thunderbird 15.04 vivid
Not affected
14.10 utopic
Not affected
14.04 LTS trusty Not in release
12.04 LTS precise
Not affected

Notes


chrisccoulson

OS X only