CVE-2015-7192

Severity CVSS v4.0:
Pending analysis
Type:
CWE-17 Code Errors
Publication date:
05/11/2015
Last modified:
12/04/2025

Description

The accessibility-tools feature in Mozilla Firefox before 42.0 on OS X improperly interacts with the implementation of the TABLE element, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by using an NSAccessibilityIndexAttribute value to reference a row index.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:* 41.0.2 (including)
cpe:2.3:o:apple:mac_os_x:*:*:*:*:*:*:*:*