Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The asm.js implementation in Mozilla Firefox before 38.0 does not properly determine heap lengths during identification of cases in which bounds checking may be safely skipped, which allows remote attackers to trigger out-of-bounds write operations and possibly execute arbitrary code, or trigger out-of-bounds read operations and possibly obtain sensitive information from process memory, via crafted JavaScript.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox asm.js实现缓冲区溢出漏洞
Vulnerability Description
Mozilla Firefox是美国Mozilla基金会开发的一款开源Web浏览器。 Mozilla Firefox 37.0.2及之前版本的asm.js实现中存在安全漏洞,该漏洞源于程序没有正确定义堆长度。远程攻击者可借助特制的JavaScript利用该漏洞触发越边界写操作,执行任意代码,或触发越边界读操作,获取敏感的进程内存信息。
CVSS Information
N/A
Vulnerability Type
N/A