CVE-2014-1547
published 2014-07-23CVE-2014-1547: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allow…
PriorityP337critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
5.59%
92.1th percentile
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Affected
22 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 30.0 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | >= 0 < 31.0+build1-0ubuntu0.14.04.1 | 31.0+build1-0ubuntu0.14.04.1 |
| mozilla | firefox_esr | — | — |
| mozilla | firefox_esr | — | — |
| mozilla | firefox_esr | — | — |
| mozilla | firefox_esr | — | — |
| mozilla | firefox_esr | — | — |
| mozilla | thunderbird | <= 24.6 | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | >= 0 < 1:31.0+build1-0ubuntu0.14.04.1 | 1:31.0+build1-0ubuntu0.14.04.1 |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
osv10.0CRITICAL
vendor_redhat10.0CRITICAL
vendor_ubuntu10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-m64r-vm62-7r8g: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31
ghsa_unreviewed·2022-05-17
CVE-2014-1547 [HIGH] GHSA-m64r-vm62-7r8g: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
OSV
firefox vulnerabilities
osv·2014-07-22·CVSS 10.0
[CRITICAL] firefox vulnerabilities
firefox vulnerabilities
Christian Holler, David Keeler, Byron Campen, Gary Kwong, Jesse Ruderman,
Andrew McCreight, Alon Zakai, Bobby Holley, Jonathan Watt, Shu-yu Guo,
Steve Fink, Terrence Cole, Gijs Kruitbosch and Cătălin Badea discovered
multiple memory safety issues in Firefox. If a user were tricked in to
opening a specially crafted website, an attacker could potentially exploit
these to cause a denial of service via application crash, or execute
arbitrary code with the privileges of the user invoking Firefox.
(CVE-2014-1547, CVE-2014-1548)
Atte Kettunen discovered a buffer overflow when interacting with WebAudio
buffers. An attacker could potentially exploit this to cause a denial of
service via application crash or execute arbitrary code with the
privileges of the user invoking Fi
OSV
thunderbird vulnerabilities
osv·2014-07-22·CVSS 10.0
CVE-2014-1547 [CRITICAL] thunderbird vulnerabilities
thunderbird vulnerabilities
Christian Holler, David Keeler and Byron Campen discovered multiple memory
safety issues in Thunderbird. If a user were tricked in to opening a
specially crafted message with scripting enabled, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Thunderbird. (CVE-2014-1547)
Atte Kettunen discovered a buffer overflow when interacting with WebAudio
buffers. If a user had enabled scripting, an attacker could potentially
exploit this to cause a denial of service via application crash or execute
arbitrary code with the privileges of the user invoking Thunderbird.
(CVE-2014-1549)
Atte Kettunen discovered a use-after-free in WebAudio. If a user had
enabled
OSV
CVE-2014-1547: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31
osv·2014-07-22·CVSS 10.0
CVE-2014-1547 [CRITICAL] CVE-2014-1547: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Red Hat
Mozilla: Miscellaneous memory safety hazards (rv:24.7) (MFSA 2014-56)
vendor_redhat·2014-07-22·CVSS 10.0
CVE-2014-1547 [CRITICAL] Mozilla: Miscellaneous memory safety hazards (rv:24.7) (MFSA 2014-56)
Mozilla: Miscellaneous memory safety hazards (rv:24.7) (MFSA 2014-56)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2014-07-22·CVSS 10.0
CVE-2014-1547 [CRITICAL] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Christian Holler, David Keeler and Byron Campen discovered multiple memory
safety issues in Thunderbird. If a user were tricked in to opening a
specially crafted message with scripting enabled, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Thunderbird. (CVE-2014-1547)
Atte Kettunen discovered a buffer overflow when interacting with WebAudio
buffers. If a user had enabled scripting, an attacker could potentially
exploit this to cause a denial of service via application crash or execute
arbitrary code with the privileges of the user invoking Thunderbird.
(CVE-2014-1549)
Atte Kett
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2014-07-22·CVSS 10.0
CVE-2014-1547 [CRITICAL] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Christian Holler, David Keeler, Byron Campen, Gary Kwong, Jesse Ruderman,
Andrew McCreight, Alon Zakai, Bobby Holley, Jonathan Watt, Shu-yu Guo,
Steve Fink, Terrence Cole, Gijs Kruitbosch and Cătălin Badea discovered
multiple memory safety issues in Firefox. If a user were tricked in to
opening a specially crafted website, an attacker could potentially exploit
these to cause a denial of service via application crash, or execute
arbitrary code with the privileges of the user invoking Firefox.
(CVE-2014-1547, CVE-2014-1548)
Atte Kettunen discovered a buffer overflow when interacting with WebAudio
buffers. An attacker could potentially exploit this to cause
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2015-1547 libtiff: use of uninitialized memory in NeXTDecode
bugzilla·2015-02-09·CVSS 6.5
CVE-2015-1547 [MEDIUM] CVE-2015-1547 libtiff: use of uninitialized memory in NeXTDecode
CVE-2015-1547 libtiff: use of uninitialized memory in NeXTDecode
Use of uninitialized memory was reported [1] in NeXTDecode in libtiff.
The example TIFF file that triggers this behavious can be found here:
http://lcamtuf.coredump.cx/afl/vulns/libtiff5.tif
[1]: http://seclists.org/oss-sec/2015/q1/454
Discussion:
Created libtiff tracking bugs for this issue:
Affects: fedora-all [bug 1190710]
---
Created mingw-libtiff tracking bugs for this issue:
Affects: epel-7 [bug 1190712]
---
Patch
There is no proper information of fixing this flaw anywhere according to
http://seclists.org/oss-sec/2015/q1/454
- uninitialized memory in NeXTDecode
Fixed in:
2014-12-29 Even Rouault
* libtiff/tif_next.c: add new tests to check that we don't read outside of
the compressed input stream buffer.
I
Bugzilla
CVE-2014-1547 Mozilla: Miscellaneous memory safety hazards (rv:24.7) (MFSA 2014-56)
bugzilla·2014-07-21·CVSS 10.0
CVE-2014-1547 [CRITICAL] CVE-2014-1547 Mozilla: Miscellaneous memory safety hazards (rv:24.7) (MFSA 2014-56)
CVE-2014-1547 Mozilla: Miscellaneous memory safety hazards (rv:24.7) (MFSA 2014-56)
Mozilla developers and community identified identified and fixed several memory safety bugs in the browser engine used in Firefox and other Mozilla-based products. Some of these bugs showed evidence of memory corruption under certain circumstances, and we presume that with enough effort at least some of these could be exploited to run arbitrary code.
In general these flaws cannot be exploited through email in the Thunderbird product because scripting is disabled, but are potentially a risk in browser or browser-like contexts.
Christian Holler, David Keeler, and Byron Campen reported memory safety problems and crashes that affect Firefox ESR 24.6 and Firefox 30.
External Reference:
http://www.mozilla.o
http://linux.oracle.com/errata/ELSA-2014-0918.htmlhttp://secunia.com/advisories/59591http://secunia.com/advisories/59719http://secunia.com/advisories/59760http://secunia.com/advisories/60083http://secunia.com/advisories/60306http://secunia.com/advisories/60486http://secunia.com/advisories/60621http://secunia.com/advisories/60628http://www.debian.org/security/2014/dsa-2986http://www.debian.org/security/2014/dsa-2996http://www.mozilla.org/security/announce/2014/mfsa2014-56.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://www.securityfocus.com/bid/68811http://www.securitytracker.com/id/1030619http://www.securitytracker.com/id/1030620https://bugzilla.mozilla.org/show_bug.cgi?id=1012694https://bugzilla.mozilla.org/show_bug.cgi?id=1019684https://bugzilla.mozilla.org/show_bug.cgi?id=1024765https://bugzilla.mozilla.org/show_bug.cgi?id=985070https://security.gentoo.org/glsa/201504-01http://linux.oracle.com/errata/ELSA-2014-0918.htmlhttp://secunia.com/advisories/59591http://secunia.com/advisories/59719http://secunia.com/advisories/59760http://secunia.com/advisories/60083http://secunia.com/advisories/60306http://secunia.com/advisories/60486http://secunia.com/advisories/60621http://secunia.com/advisories/60628http://www.debian.org/security/2014/dsa-2986http://www.debian.org/security/2014/dsa-2996http://www.mozilla.org/security/announce/2014/mfsa2014-56.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.htmlhttp://www.securityfocus.com/bid/68811http://www.securitytracker.com/id/1030619http://www.securitytracker.com/id/1030620https://bugzilla.mozilla.org/show_bug.cgi?id=1012694https://bugzilla.mozilla.org/show_bug.cgi?id=1019684https://bugzilla.mozilla.org/show_bug.cgi?id=1024765https://bugzilla.mozilla.org/show_bug.cgi?id=985070https://security.gentoo.org/glsa/201504-01
2014-07-23
Published