Security Advisory

CVE-2015-4510

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2015-09-24 01:00:00
Last updated 2024-08-06 06:18:11
Assigner mozilla
CVSS score not scored
State PUBLISHED

Description

Race condition in the WorkerPrivate::NotifyFeatures function in Mozilla Firefox before 41.0 allows remote attackers to execute arbitrary code or cause a denial of service (use-after-free and application crash) by leveraging improper interaction between shared workers and the IndexedDB implementation.