CVE-2015-2734
The CairoTextureClientD3D9::BorrowDrawTarget function in the Direct3D 9 implementation in Mozilla Firefox before 39.0, Firefox ESR 31.x before 31.8 and 38.x before 38.1, and Thunderbird before 38.1 reads data from uninitialized memory locations, which has unspecified impact and attack vectors.
- Affected products
- Alt Linux, Centos, Direct 3D 9, Firefox, Firefox Esr, Red Hat, Suse, Thunderbird
- Suse Linux Enterprise Desktop
- = 12
- Suse Linux Enterprise Server
- = 11
- Suse Linux Enterprise Software Development Kit
- = 12
- Suse Suse Linux Enterprise Server
- = 12
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 2.7% (84th percentile)
- Weakness
- CWE-17
- NVD status
- Modified
- Published
- 2015-07-06
CVE-2015-2734 at NVD
No indexed exploits for CVE-2015-2734 yet
Our index is partial: it proves presence, never absence
No exploit for CVE-2015-2734 has been indexed yet. Our index is built from live traffic and upstream syncs, so this page can only say what it knows — not that no exploit exists.