Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The HTTP/2 implementation in Mozilla Firefox before 43.0 allows remote attackers to cause a denial of service (integer underflow, assertion failure, and application exit) via a malformed PushPromise frame that triggers decompressed-buffer length miscalculation and incorrect memory allocation.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Mozilla Firefox HTTP/2实现数字错误漏洞
Vulnerability Description
Mozilla Firefox是美国Mozilla基金会开发的一款开源Web浏览器。 Mozilla Firefox 42.0及之前版本的HTTP/2实现过程中存在安全漏洞。远程攻击者可借助畸形的PushPromise帧(触发decompressed-buffer长度计算错误和不正确的内存分配)利用该漏洞造成拒绝服务(整数溢出,断言失败和应用程序退出)。
CVSS Information
N/A
Vulnerability Type
N/A