UBUNTU-CVE-2015-4496

Advisory lineage Upstream: 1 Downstream: 0
Upstream
Published: 16 Aug 2015, 01:59
Last modified:22 Apr 2026, 10:11

Vulnerability Summary

Overall Risk (default)
minimal
0/100
CVSS Score
No data
EPSS Score
No data
KEV
Not listed
Ransomware
No reports
Public exploits
None found
Dark Web
Not detected

Timeline

16 Aug 2015, 01:59
Published
Vulnerability first disclosed
22 Apr 2026, 10:11
Last Modified
Vulnerability information updated

Description

Multiple integer overflows in libstagefright in Mozilla Firefox before 38.0 allow remote attackers to execute arbitrary code via crafted sample metadata in an MPEG-4 video file, a related issue to CVE-2015-1538.

Affected Systems

  • ubuntufirefox

    < 40.0+build4-0ubuntu0.14.04.4

References (5)