CVE-2014-1542
published 2014-06-11CVE-2014-1542: Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code via vectors…
PriorityP338medium6.8CVSS 2.0
AVNACMAuNCPIPAP
EPSS
5.30%
91.7th percentile
Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code via vectors related to a crafted AudioBuffer channel count and sample rate.
Affected
5 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 29.0.1 | — |
| mozilla | firefox | >= 0 < 30.0+build1-0ubuntu0.14.04.3 | 30.0+build1-0ubuntu0.14.04.3 |
| opensuse | opensuse | — | — |
| opensuse_project | opensuse | — | — |
| oracle | solaris | — | — |
CVSS provenance
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv10.0CRITICAL
vendor_ubuntu10.0CRITICAL
vendor_redhat6.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-c9fr-v3cp-6wrm: Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30
ghsa_unreviewed·2022-05-14
CVE-2014-1542 [MEDIUM] CWE-119 GHSA-c9fr-v3cp-6wrm: Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30
Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code via vectors related to a crafted AudioBuffer channel count and sample rate.
OSV
CVE-2014-1542: Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30
osv·2014-06-11·CVSS 6.8
CVE-2014-1542 [MEDIUM] CVE-2014-1542: Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30
Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code via vectors related to a crafted AudioBuffer channel count and sample rate.
OSV
firefox vulnerabilities
osv·2014-06-11·CVSS 10.0
[CRITICAL] firefox vulnerabilities
firefox vulnerabilities
Gary Kwong, Christoph Diehl, Christian Holler, Hannes Verschore, Jan de
Mooij, Ryan VanderMeulen, Jeff Walden, Kyle Huey, Jesse Ruderman, Gregor
Wagner, Benoit Jacob and Karl Tomlinson discovered multiple memory safety
issues in Firefox. If a user were tricked in to opening a specially
crafted website, an attacker could potentially exploit these to cause a
denial of service via application crash, or execute arbitrary code with
the privileges of the user invoking Firefox. (CVE-2014-1533,
CVE-2014-1534)
Abhishek Arya discovered multiple use-after-free and out-of-bounds read
issues in Firefox. An attacker could potentially exploit these to cause
a denial of service via application crash or execute arbitrary code with
the priviliges of the user invoking Firefox. (CVE-
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2014-06-11·CVSS 10.0
CVE-2014-1533 [CRITICAL] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Gary Kwong, Christoph Diehl, Christian Holler, Hannes Verschore, Jan de
Mooij, Ryan VanderMeulen, Jeff Walden, Kyle Huey, Jesse Ruderman, Gregor
Wagner, Benoit Jacob and Karl Tomlinson discovered multiple memory safety
issues in Firefox. If a user were tricked in to opening a specially
crafted website, an attacker could potentially exploit these to cause a
denial of service via application crash, or execute arbitrary code with
the privileges of the user invoking Firefox. (CVE-2014-1533,
CVE-2014-1534)
Abhishek Arya discovered multiple use-after-free and out-of-bounds read
issues in Firefox. An attacker could potentially exploit these to cause
a denial of
Red Hat
Mozilla: Buffer overflow in Web Audio Speex resampler (MFSA 2014-53)
vendor_redhat·2014-06-10·CVSS 6.8
CVE-2014-1542 [MEDIUM] Mozilla: Buffer overflow in Web Audio Speex resampler (MFSA 2014-53)
Mozilla: Buffer overflow in Web Audio Speex resampler (MFSA 2014-53)
Buffer overflow in the Speex resampler in the Web Audio subsystem in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code via vectors related to a crafted AudioBuffer channel count and sample rate.
Statement: This issue does not affect the version of firefox and thunderbird as shipped with Red Hat Enterprise Linux 5 and 6
Package: firefox (Red Hat Enterprise Linux 5) - Not affected
Package: thunderbird (Red Hat Enterprise Linux 5) - Not affected
Package: firefox (Red Hat Enterprise Linux 6) - Not affected
Package: thunderbird (Red Hat Enterprise Linux 6) - Not affected
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2014-1542 Mozilla: Buffer overflow in Web Audio Speex resampler (MFSA 2014-53)
bugzilla·2014-06-10·CVSS 6.8
CVE-2014-1542 [MEDIUM] CVE-2014-1542 Mozilla: Buffer overflow in Web Audio Speex resampler (MFSA 2014-53)
CVE-2014-1542 Mozilla: Buffer overflow in Web Audio Speex resampler (MFSA 2014-53)
Security researcher Holger Fuhrmannek used the used the Address Sanitizer tool to discover a buffer overflow with the Speex resampler in Web Audio when working with audio content that exceeds expected bounds. This leads to a potentially exploitable crash.
External Reference:
http://www.mozilla.org/security/announce/2014/mfsa2014-53.html
Acknowledgements:
Red Hat would like to thank the Mozilla project for reporting this issue. Upstream acknowledges Holger Fuhrmannek as the original reporter.
Statement:
This issue does not affect the version of firefox and thunderbird as shipped with Red Hat Enterprise Linux 5 and 6
CTF
picoctf / common-vulnerability-exercise
ctf_writeups·2014·CVSS 6.8
[MEDIUM] picoctf / common-vulnerability-exercise
### Solved by bitvijays
In the excercise, you have to find the CVE-ID.
>This disc is encrypted. The surprisingly elaborate password hint refers to "the CVE Identifier for a 2014 vulnerability that allowed arbitrary code execution in Firefox via a buffer overflow in a speech codec". If you found this "CVE-ID" thingy, it'd probably be the password.
To solve this, we visit the website cvedetails.com and search for Mozilla Firefox in the Google Custom Search. By doing it, we are provided a table showing Vulnerability Trends Over Time.
By the description of the problem, if we see, there are 19 Overflow vulnerabilities published in 2014. Clicking further on 19 provides you Security Vulnerabilities Published In 2014 (Overflow)
Searching for spee, you would find the CVE-ID for the vulnerabil
http://lists.opensuse.org/opensuse-updates/2014-06/msg00040.htmlhttp://lists.opensuse.org/opensuse-updates/2014-07/msg00001.htmlhttp://secunia.com/advisories/59052http://secunia.com/advisories/59171http://secunia.com/advisories/59387http://secunia.com/advisories/59486http://secunia.com/advisories/59866http://www.mozilla.org/security/announce/2014/mfsa2014-53.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://www.securityfocus.com/bid/67968http://www.securitytracker.com/id/1030388http://www.ubuntu.com/usn/USN-2243-1https://bugzilla.mozilla.org/show_bug.cgi?id=991533https://security.gentoo.org/glsa/201504-01http://lists.opensuse.org/opensuse-updates/2014-06/msg00040.htmlhttp://lists.opensuse.org/opensuse-updates/2014-07/msg00001.htmlhttp://secunia.com/advisories/59052http://secunia.com/advisories/59171http://secunia.com/advisories/59387http://secunia.com/advisories/59486http://secunia.com/advisories/59866http://www.mozilla.org/security/announce/2014/mfsa2014-53.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://www.securityfocus.com/bid/67968http://www.securitytracker.com/id/1030388http://www.ubuntu.com/usn/USN-2243-1https://bugzilla.mozilla.org/show_bug.cgi?id=991533https://security.gentoo.org/glsa/201504-01
2014-06-11
Published