Mozilla Firefox before 15.0 on Android does not properly implement unspecified callers of the __android_log_print function, which allows remote attackers to execute arbitrary code via a crafted web page that calls the JavaScript dump function.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Freebsd | — | Upgrade libxulUpgrade linux-thunderbirdUpgrade firefoxUpgrade seamonkeyUpgrade linux-seamonkeyUpgrade thunderbirdUpgrade linux-firefox | Dec 10, 2025 | Aug 30, 2012 |
| Mfsa2012 71 | — | — | Aug 30, 2012 | Aug 29, 2012 |
| Suse | — | Upgrade mozilla-nsprUpgrade MozillaFirefoxUpgrade mozilla-nspr-32bitUpgrade mozilla-nspr-develUpgrade mozilla-nss-develUpgrade MozillaFirefox-branding-SLEDUpgrade mozilla-nss-32bitUpgrade mozilla-nspr-x86Upgrade mozilla-nss-toolsUpgrade MozillaFirefox-translationsUpgrade libfreebl3-32bitUpgrade mozilla-nssUpgrade libfreebl3-x86Upgrade mozilla-nss-x86Upgrade libfreebl3 | Feb 17, 2015 | Jun 28, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub