Bug 941777 (CVE-2015-4496) - VUL-0: CVE-2015-4496: MFSA 2015-93: MozillaFirefox: Integer overflows in libstagefright while processing MP4 video metadata (MFSA 2015-93)
Summary: VUL-0: CVE-2015-4496: MFSA 2015-93: MozillaFirefox: Integer overflows in libs...
Status: RESOLVED DUPLICATE of bug 940806
Alias: CVE-2015-4496
Product: SUSE Security Incidents
Classification: Novell Products
Component: Incidents (show other bugs)
Version: unspecified
Hardware: Other Other
: P3 - Medium : Major
Target Milestone: ---
Assignee: Security Team bot
QA Contact: Security Team bot
URL: https://smash.suse.de/issue/122402/
Whiteboard:
Keywords:
Depends on:
Blocks:
 
Reported: 2015-08-14 11:52 UTC by Alexander Bergmann
Modified: 2015-09-10 15:14 UTC (History)
3 users (show)

See Also:
Found By: Security Response Team
Services Priority:
Business Priority:
Blocker: ---
Marketing QA Status: ---
IT Deployment: ---


Attachments

Note You need to log in before you can comment on or make changes to this bug.
Description Alexander Bergmann 2015-08-14 11:52:01 UTC
https://www.mozilla.org/en-US/security/advisories/mfsa2015-93/

Mozilla Foundation Security Advisory 2015-93

Integer overflows in libstagefright while processing MP4 video metadata

Announced:  August 12, 2015
Reporter:   Joshua Drake
Impact:     Critical
Products:   Firefox
Fixed in:   Firefox 38

Description
Security researcher Joshua Drake reported potential integer overflows in the libstagefright library while processing video sample metadata in MPEG4 video files. This can lead to a potentially exploitable crash.

References
https://bugzilla.mozilla.org/show_bug.cgi?id=1149605 (CVE-2015-4496)


This issue was addressed by 38.0 ESR via bug 940806.

References:
https://www.mozilla.org/en-US/security/advisories/mfsa2015-93/
https://bugzilla.redhat.com/show_bug.cgi?id=1253550
http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2015-4496
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2015-4496
Comment 1 Swamp Workflow Management 2015-08-14 22:00:27 UTC
bugbot adjusting priority
Comment 2 Petr Cerny 2015-08-19 09:45:18 UTC
Unless you want to change the changelog, I guess we can mark this as depending on bug 940806, right?
Comment 3 Marcus Meissner 2015-09-10 15:14:24 UTC
rel;eased

*** This bug has been marked as a duplicate of bug 940806 ***