CVE-2014-1575Out-of-bounds Write in Mozilla Firefox

CWE-2647 documents6 sources
Severity
7.5HIGHNVD
EPSS
2.0%
top 16.35%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedOct 15
Latest updateMay 17

Description

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 33.0 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to improper interaction between threading and garbage collection in the GCRuntime::triggerGC function in js/src/jsgc.cpp, and unknown other vectors.

CVSS vector

AV:N/AC:L/C:P/I:P/A:PExploitability: 10.0 | Impact: 6.4

Affected Packages2 packages

Ubuntumozilla/firefox< 33.0+build2-0ubuntu0.14.04.1
NVDmozilla/firefox32.0+3

🔴Vulnerability Details

3
GHSA
GHSA-v2mv-7r3m-v2g8: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 332022-05-17
OSV
firefox vulnerabilities2014-10-14
OSV
CVE-2014-1575: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 332014-10-14

📋Vendor Advisories

2
Ubuntu
Firefox vulnerabilities2014-10-14
Red Hat
Mozilla: Miscellaneous memory safety hazards (rv:33.0) (MFSA 2014-74)2014-10-14

💬Community

1
Bugzilla
CVE-2014-1575 Mozilla: Miscellaneous memory safety hazards (rv:33.0) (MFSA 2014-74)2014-10-14