Security Advisory

CVE-2015-7218

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2015-12-16 11:00:00
Last updated 2024-08-06 07:43:45
Assigner mozilla
State PUBLISHED

Description

The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a single-byte header frame that triggers incorrect memory allocation.