CVE-2016-1931

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 44.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to uninitialized memory encountered during brotli data compression, and other vectors.
References
Link Resource
http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00001.html
http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00002.html
http://www.mozilla.org/security/announce/2016/mfsa2016-01.html Vendor Advisory
http://www.securityfocus.com/bid/81953
http://www.securitytracker.com/id/1034825
http://www.ubuntu.com/usn/USN-2880-1
http://www.ubuntu.com/usn/USN-2880-2
https://bugzilla.mozilla.org/show_bug.cgi?id=1180064
https://bugzilla.mozilla.org/show_bug.cgi?id=1186973
https://bugzilla.mozilla.org/show_bug.cgi?id=1206675
https://bugzilla.mozilla.org/show_bug.cgi?id=1207298
https://bugzilla.mozilla.org/show_bug.cgi?id=1209358
https://bugzilla.mozilla.org/show_bug.cgi?id=1209365
https://bugzilla.mozilla.org/show_bug.cgi?id=1209366
https://bugzilla.mozilla.org/show_bug.cgi?id=1209368
https://bugzilla.mozilla.org/show_bug.cgi?id=1209546
https://bugzilla.mozilla.org/show_bug.cgi?id=1222015
https://bugzilla.mozilla.org/show_bug.cgi?id=1229825
https://bugzilla.mozilla.org/show_bug.cgi?id=1231121
https://bugzilla.mozilla.org/show_bug.cgi?id=1234576
https://security.gentoo.org/glsa/201605-06
http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00001.html
http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00002.html
http://www.mozilla.org/security/announce/2016/mfsa2016-01.html Vendor Advisory
http://www.securityfocus.com/bid/81953
http://www.securitytracker.com/id/1034825
http://www.ubuntu.com/usn/USN-2880-1
http://www.ubuntu.com/usn/USN-2880-2
https://bugzilla.mozilla.org/show_bug.cgi?id=1180064
https://bugzilla.mozilla.org/show_bug.cgi?id=1186973
https://bugzilla.mozilla.org/show_bug.cgi?id=1206675
https://bugzilla.mozilla.org/show_bug.cgi?id=1207298
https://bugzilla.mozilla.org/show_bug.cgi?id=1209358
https://bugzilla.mozilla.org/show_bug.cgi?id=1209365
https://bugzilla.mozilla.org/show_bug.cgi?id=1209366
https://bugzilla.mozilla.org/show_bug.cgi?id=1209368
https://bugzilla.mozilla.org/show_bug.cgi?id=1209546
https://bugzilla.mozilla.org/show_bug.cgi?id=1222015
https://bugzilla.mozilla.org/show_bug.cgi?id=1229825
https://bugzilla.mozilla.org/show_bug.cgi?id=1231121
https://bugzilla.mozilla.org/show_bug.cgi?id=1234576
https://security.gentoo.org/glsa/201605-06
Configurations

Configuration 1 (hide)

cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:opensuse:13.2:*:*:*:*:*:*:*

History

21 Nov 2024, 02:47

Type Values Removed Values Added
References () http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00001.html - () http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00001.html -
References () http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00002.html - () http://lists.opensuse.org/opensuse-security-announce/2016-02/msg00002.html -
References () http://www.mozilla.org/security/announce/2016/mfsa2016-01.html - Vendor Advisory () http://www.mozilla.org/security/announce/2016/mfsa2016-01.html - Vendor Advisory
References () http://www.securityfocus.com/bid/81953 - () http://www.securityfocus.com/bid/81953 -
References () http://www.securitytracker.com/id/1034825 - () http://www.securitytracker.com/id/1034825 -
References () http://www.ubuntu.com/usn/USN-2880-1 - () http://www.ubuntu.com/usn/USN-2880-1 -
References () http://www.ubuntu.com/usn/USN-2880-2 - () http://www.ubuntu.com/usn/USN-2880-2 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1180064 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1180064 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1186973 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1186973 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1206675 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1206675 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1207298 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1207298 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1209358 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1209358 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1209365 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1209365 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1209366 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1209366 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1209368 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1209368 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1209546 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1209546 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1222015 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1222015 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1229825 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1229825 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1231121 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1231121 -
References () https://bugzilla.mozilla.org/show_bug.cgi?id=1234576 - () https://bugzilla.mozilla.org/show_bug.cgi?id=1234576 -
References () https://security.gentoo.org/glsa/201605-06 - () https://security.gentoo.org/glsa/201605-06 -

Information

Published : 2016-01-31 18:59

Updated : 2024-11-21 02:47


NVD link : CVE-2016-1931

Mitre link : CVE-2016-1931

CVE.ORG link : CVE-2016-1931


JSON object : View

Products Affected

opensuse

  • leap
  • opensuse

mozilla

  • firefox
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer