Endpoint Vulnerability

Memory leak in mozTCPSocket to servers

Description

Security researcher David Chan reported that Mozilla's mozTCPSocket implementation could leak data past the end of an array, allowing for the potential exposure of memory or private data to malicious servers.

Affected Products

Firefox

References

CVE-2015-4503,