Back

HIGH

Mozilla: WebRTC and LibVPX vulnerabilities found through code inspection (MFSA 2016-32)

Published Mar 13, 2016

Description

The I420VideoFrame::CreateFrame function in the WebRTC implementation in Mozilla Firefox before 45.0 on Windows omits an unspecified status check, which might allow remote attackers to cause a denial of service (memory corruption) or possibly have other impact via unknown vectors.

Affected products

Remediation

Red Hat statement

This issue does not affect the version of firefox and thunderbird as shipped with Red Hat Enterprise Linux 5, 6 and 7.

Metrics

References (12)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mozilla
Published Mar 13, 2016
Updated Aug 5, 2024
Reserved Jan 20, 2016
NVD
Status Modified
Modified Jun 17, 2026
Red Hat
Severity Moderate
Public date Mar 8, 2016