Buffer Overflow in libvpx: Remote Code Execution via Crafted VP9 File

Buffer Overflow in libvpx: Remote Code Execution via Crafted VP9 File

CVE-2015-4506 · MEDIUM Severity

AV:N/AC:M/AU:N/C:P/I:P/A:P

Buffer overflow in the vp9_init_context_buffers function in libvpx, as used in Mozilla Firefox before 41.0 and Firefox ESR 38.x before 38.3, allows remote attackers to execute arbitrary code via a crafted VP9 file.

Learn more about our Cis Benchmark Audit For Mozilla Firefox.