CVE-2015-0828

medium
Published 2015-02-25 · Modified 2026-05-06
CVSS v3
CVSS v2
6.8
VIR risk
6.8

Description

Double free vulnerability in the nsXMLHttpRequest::GetResponse function in Mozilla Firefox before 36.0, when a nonstandard memory allocator is used, allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via crafted JavaScript code that makes an XMLHttpRequest call with zero bytes of data.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: security@mozilla.org — http://www.mozilla.org/security/announce/2015/mfsa2015-18.html

OS impact

OSVersionStatusFixed in
suse suse13.1affected
suse suse13.2affected

Application impact

VendorProductVersionsFixed
mozilla mozillafirefox{"endIncluding":"35.0.1"}
mozilla mozillafirefox0.1
mozilla mozillafirefox0.2
mozilla mozillafirefox0.3
mozilla mozillafirefox0.4
mozilla mozillafirefox0.5
mozilla mozillafirefox0.6
mozilla mozillafirefox0.6.1
mozilla mozillafirefox0.7
mozilla mozillafirefox0.7.1
mozilla mozillafirefox0.8
mozilla mozillafirefox0.9
mozilla mozillafirefox0.9.1
mozilla mozillafirefox0.9.2
mozilla mozillafirefox0.9.3
mozilla mozillafirefox0.10
mozilla mozillafirefox0.10.1
mozilla mozillafirefox1.0
mozilla mozillafirefox1.0.1
mozilla mozillafirefox1.0.2
mozilla mozillafirefox1.0.3
mozilla mozillafirefox1.0.4
mozilla mozillafirefox1.0.5
mozilla mozillafirefox1.0.6
mozilla mozillafirefox1.0.7
mozilla mozillafirefox1.0.8
mozilla mozillafirefox1.4.1
mozilla mozillafirefox1.5
mozilla mozillafirefox1.5.0.1
mozilla mozillafirefox1.5.0.2
mozilla mozillafirefox1.5.0.3
mozilla mozillafirefox1.5.0.4
mozilla mozillafirefox1.5.0.5
mozilla mozillafirefox1.5.0.6
mozilla mozillafirefox1.5.0.7
mozilla mozillafirefox1.5.0.8
mozilla mozillafirefox1.5.0.9
mozilla mozillafirefox1.5.0.10
mozilla mozillafirefox1.5.0.11
mozilla mozillafirefox1.5.0.12
mozilla mozillafirefox1.5.1
mozilla mozillafirefox1.5.2
mozilla mozillafirefox1.5.3
mozilla mozillafirefox1.5.4
mozilla mozillafirefox1.5.5
mozilla mozillafirefox1.5.6
mozilla mozillafirefox1.5.7
mozilla mozillafirefox1.5.8
mozilla mozillafirefox1.8
mozilla mozillafirefox2.0
mozilla mozillafirefox2.0.0.1
mozilla mozillafirefox2.0.0.2
mozilla mozillafirefox2.0.0.3
mozilla mozillafirefox2.0.0.4
mozilla mozillafirefox2.0.0.5
mozilla mozillafirefox2.0.0.6
mozilla mozillafirefox2.0.0.7
mozilla mozillafirefox2.0.0.8
mozilla mozillafirefox2.0.0.9
mozilla mozillafirefox2.0.0.10
mozilla mozillafirefox2.0.0.11
mozilla mozillafirefox2.0.0.12
mozilla mozillafirefox2.0.0.13
mozilla mozillafirefox2.0.0.14
mozilla mozillafirefox2.0.0.15
mozilla mozillafirefox2.0.0.16
mozilla mozillafirefox2.0.0.17
mozilla mozillafirefox2.0.0.18
mozilla mozillafirefox2.0.0.19
mozilla mozillafirefox2.0.0.20
mozilla mozillafirefox3.0
mozilla mozillafirefox3.0.1
mozilla mozillafirefox3.0.2
mozilla mozillafirefox3.0.3
mozilla mozillafirefox3.0.4
mozilla mozillafirefox3.0.5
mozilla mozillafirefox3.0.6
mozilla mozillafirefox3.0.7
mozilla mozillafirefox3.0.8
mozilla mozillafirefox3.0.9
mozilla mozillafirefox3.0.10
mozilla mozillafirefox3.0.11
mozilla mozillafirefox3.0.12
mozilla mozillafirefox3.0.13
mozilla mozillafirefox3.0.14
mozilla mozillafirefox3.0.15
mozilla mozillafirefox3.0.16
mozilla mozillafirefox3.0.17
mozilla mozillafirefox3.0.18
mozilla mozillafirefox3.0.19
mozilla mozillafirefox3.5
mozilla mozillafirefox3.5.1
mozilla mozillafirefox3.5.2
mozilla mozillafirefox3.5.3
mozilla mozillafirefox3.5.4
mozilla mozillafirefox3.5.5
mozilla mozillafirefox3.5.6
mozilla mozillafirefox3.5.7
mozilla mozillafirefox3.5.8
mozilla mozillafirefox3.5.9
mozilla mozillafirefox3.5.10
mozilla mozillafirefox3.5.11
mozilla mozillafirefox3.5.12
mozilla mozillafirefox3.5.13
mozilla mozillafirefox3.5.14
mozilla mozillafirefox3.5.15
mozilla mozillafirefox3.5.16
mozilla mozillafirefox3.5.17
mozilla mozillafirefox3.5.18
mozilla mozillafirefox3.5.19
mozilla mozillafirefox3.6
mozilla mozillafirefox3.6.2
mozilla mozillafirefox3.6.3
mozilla mozillafirefox3.6.4
mozilla mozillafirefox3.6.6
mozilla mozillafirefox3.6.7
mozilla mozillafirefox3.6.8
mozilla mozillafirefox3.6.9
mozilla mozillafirefox3.6.10
mozilla mozillafirefox3.6.11
mozilla mozillafirefox3.6.12
mozilla mozillafirefox3.6.13
mozilla mozillafirefox3.6.14
mozilla mozillafirefox3.6.15
mozilla mozillafirefox3.6.16
mozilla mozillafirefox3.6.17
mozilla mozillafirefox3.6.18
mozilla mozillafirefox3.6.19
mozilla mozillafirefox3.6.20
mozilla mozillafirefox3.6.21
mozilla mozillafirefox3.6.22
mozilla mozillafirefox3.6.23
mozilla mozillafirefox3.6.24
mozilla mozillafirefox3.6.25
mozilla mozillafirefox3.6.26
mozilla mozillafirefox3.6.27
mozilla mozillafirefox3.6.28
mozilla mozillafirefox4.0
mozilla mozillafirefox4.0.1
mozilla mozillafirefox5.0
mozilla mozillafirefox5.0.1
mozilla mozillafirefox6.0
mozilla mozillafirefox6.0.1
mozilla mozillafirefox6.0.2
mozilla mozillafirefox7.0
mozilla mozillafirefox7.0.1
mozilla mozillafirefox8.0
mozilla mozillafirefox8.0.1
mozilla mozillafirefox9.0
mozilla mozillafirefox9.0.1
mozilla mozillafirefox10.0
mozilla mozillafirefox10.0.1
mozilla mozillafirefox10.0.2
mozilla mozillafirefox10.0.3
mozilla mozillafirefox10.0.4
mozilla mozillafirefox10.0.5
mozilla mozillafirefox10.0.6
mozilla mozillafirefox10.0.7
mozilla mozillafirefox10.0.8
mozilla mozillafirefox10.0.9
mozilla mozillafirefox10.0.10
mozilla mozillafirefox10.0.11
mozilla mozillafirefox10.0.12
mozilla mozillafirefox11.0
mozilla mozillafirefox12.0
mozilla mozillafirefox13.0
mozilla mozillafirefox13.0.1
mozilla mozillafirefox14.0
mozilla mozillafirefox14.0.1
mozilla mozillafirefox15.0
mozilla mozillafirefox15.0.1
mozilla mozillafirefox16.0
mozilla mozillafirefox16.0.1
mozilla mozillafirefox16.0.2
mozilla mozillafirefox17.0
mozilla mozillafirefox17.0.1
mozilla mozillafirefox17.0.2
mozilla mozillafirefox17.0.3
mozilla mozillafirefox17.0.4
mozilla mozillafirefox17.0.5
mozilla mozillafirefox17.0.6
mozilla mozillafirefox17.0.7
mozilla mozillafirefox17.0.8
mozilla mozillafirefox17.0.9
mozilla mozillafirefox17.0.10
mozilla mozillafirefox17.0.11
mozilla mozillafirefox18.0
mozilla mozillafirefox18.0.1
mozilla mozillafirefox18.0.2
mozilla mozillafirefox19.0
mozilla mozillafirefox19.0.1
mozilla mozillafirefox19.0.2
mozilla mozillafirefox20.0
mozilla mozillafirefox20.0.1
mozilla mozillafirefox21.0
mozilla mozillafirefox22.0
mozilla mozillafirefox23.0
mozilla mozillafirefox23.0.1
mozilla mozillafirefox24.0
mozilla mozillafirefox24.1

References

Verify integrity in audit chain (admin only). AS-IS.