CVE-2014-1547Out-of-bounds Write in Mozilla Firefox

12 documents6 sources
Severity
10.0CRITICALNVD
EPSS
2.2%
top 15.54%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedJul 23
Latest updateMay 17

Description

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

CVSS vector

AV:N/AC:L/C:C/I:C/A:CExploitability: 10.0 | Impact: 10.0

Affected Packages5 packages

Ubuntumozilla/firefox< 31.0+build1-0ubuntu0.14.04.1
NVDmozilla/firefox30.0+5
NVDmozilla/firefox_esr5 versions+4
Ubuntumozilla/thunderbird< 1:31.0+build1-0ubuntu0.14.04.1

🔴Vulnerability Details

4
GHSA
GHSA-m64r-vm62-7r8g: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 312022-05-17
OSV
firefox vulnerabilities2014-07-22
OSV
thunderbird vulnerabilities2014-07-22
OSV
CVE-2014-1547: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 312014-07-22

📋Vendor Advisories

3
Red Hat
Mozilla: Miscellaneous memory safety hazards (rv:24.7) (MFSA 2014-56)2014-07-22
Ubuntu
Thunderbird vulnerabilities2014-07-22
Ubuntu
Firefox vulnerabilities2014-07-22

💬Community

2
Bugzilla
CVE-2015-1547 libtiff: use of uninitialized memory in NeXTDecode2015-02-09
Bugzilla
CVE-2014-1547 Mozilla: Miscellaneous memory safety hazards (rv:24.7) (MFSA 2014-56)2014-07-21