PublicDateAtUSN: 2015-08-11 Candidate: CVE-2015-4489 PublicDate: 2015-08-16 01:59:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4489 https://www.mozilla.org/en-US/security/advisories/mfsa2015-90/ https://ubuntu.com/security/notices/USN-2702-1 https://ubuntu.com/security/notices/USN-2712-1 Description: The nsTArray_Impl class in Mozilla Firefox before 40.0, Firefox ESR 38.x before 38.2, and Firefox OS before 2.2 might allow remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact by leveraging a self assignment. Ubuntu-Description: Notes: Bugs: Priority: medium Discovered-by: Assigned-to: chrisccoulson CVSS: Patches_firefox: upstream_firefox: released (40.0) precise_firefox: released (40.0+build4-0ubuntu0.12.04.1) trusty_firefox: released (40.0+build4-0ubuntu0.14.04.1) trusty/esm_firefox: DNE (trusty was released [40.0+build4-0ubuntu0.14.04.1]) vivid_firefox: released (40.0+build4-0ubuntu0.15.04.1) devel_firefox: released (40.0+build4-0ubuntu1) Patches_thunderbird: Priority_thunderbird: low upstream_thunderbird: released (38.2.0) precise_thunderbird: released (1:38.2.0+build1-0ubuntu0.12.04.2) trusty_thunderbird: released (1:38.2.0+build1-0ubuntu0.14.04.1) trusty/esm_thunderbird: DNE (trusty was released [1:38.2.0+build1-0ubuntu0.14.04.1]) vivid_thunderbird: released (1:38.2.0+build1-0ubuntu0.15.04.1) devel_thunderbird: released (1:38.2.0+build1-0ubuntu1)