CVE-2015-4516

Publication date 22 September 2015

Last updated 24 July 2024


Ubuntu priority

Mozilla Firefox before 41.0 allows remote attackers to bypass certain ECMAScript 5 (aka ES5) API protection mechanisms and modify immutable properties, and consequently execute arbitrary JavaScript code with chrome privileges, via a crafted web page that does not use ES5 APIs.

Status

Package Ubuntu Release Status
firefox 15.04 vivid
Fixed 41.0+build3-0ubuntu0.15.04.1
14.04 LTS trusty
Fixed 41.0+build3-0ubuntu0.14.04.1
12.04 LTS precise
Fixed 41.0+build3-0ubuntu0.12.04.1

References

Related Ubuntu Security Notices (USN)

    • USN-2743-1
    • Firefox vulnerabilities
    • 22 September 2015

Other references