CVE-2014-1585
published 2014-10-15CVE-2014-1585: The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2…
PriorityP421medium5CVSS 2.0
AVNACLAuNCPINAN
EPSS
2.79%
85.0th percentile
The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not properly recognize Stop Sharing actions for videos in IFRAME elements, which allows remote attackers to obtain sensitive information from the local camera by maintaining a session after the user tries to discontinue streaming.
Affected
8 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 32.0 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | >= 0 < 33.0+build2-0ubuntu0.14.04.1 | 33.0+build2-0ubuntu0.14.04.1 |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | >= 0 < 1:31.2.0+build2-0ubuntu0.14.04.1 | 1:31.2.0+build2-0ubuntu0.14.04.1 |
CVSS provenance
nvdv2.05.0MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
osv7.5HIGH
vendor_ubuntu7.5HIGH
vendor_redhat5.0MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2014-10-15·CVSS 7.5
CVE-2014-1574 [HIGH] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Bobby Holley, Christian Holler, David Bolter, Byron Campen and Jon
Coppeard discovered multiple memory safety issues in Thunderbird. If a
user were tricked in to opening a specially crafted message with scripting
enabled, an attacker could potentially exploit these to cause a denial of
service via application crash, or execute arbitrary code with the
privileges of the user invoking Thunderbird. (CVE-2014-1574)
Atte Kettunen discovered a buffer overflow during CSS manipulation. If a
user were tricked in to opening a specially crafted message, an attacker
could potentially exploit this to cause a denial of service via
application crash or execute arbitrary code with the privileges of the
user in
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2014-10-14·CVSS 7.5
CVE-2014-1574 [HIGH] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it
opened a malicious website.
Bobby Holley, Christian Holler, David Bolter, Byron Campen, Jon Coppeard,
Carsten Book, Martijn Wargers, Shih-Chiang Chien, Terrence Cole and
Jeff Walden discovered multiple memory safety issues in Firefox. If a user
were tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Firefox. (CVE-2014-1574, CVE-2014-1575)
Atte Kettunen discovered a buffer overflow during CSS manipulation. If a
user were tricked in to opening a specially crafted website, an attacker
could potentially exploit this to cause
Red Hat
Mozilla: Inconsistent video sharing within iframe (MFSA 2014-81)
vendor_redhat·2014-10-14·CVSS 5.0
CVE-2014-1585 [MEDIUM] Mozilla: Inconsistent video sharing within iframe (MFSA 2014-81)
Mozilla: Inconsistent video sharing within iframe (MFSA 2014-81)
The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not properly recognize Stop Sharing actions for videos in IFRAME elements, which allows remote attackers to obtain sensitive information from the local camera by maintaining a session after the user tries to discontinue streaming.
Package: firefox (Red Hat Enterprise Linux 5) - Affected
Package: thunderbird (Red Hat Enterprise Linux 5) - Affected
Package: firefox (Red Hat Enterprise Linux 6) - Affected
Package: thunderbird (Red Hat Enterprise Linux 6) - Affected
Package: firefox (Red Hat Enterprise Linux 7) - Affected
Red Hat
openssl: DTLS memory leak from zero-length fragments
vendor_redhat·2014-08-06·CVSS 5.0
CVE-2014-3507 [MEDIUM] CWE-401 openssl: DTLS memory leak from zero-length fragments
openssl: DTLS memory leak from zero-length fragments
Memory leak in d1_both.c in the DTLS implementation in OpenSSL 0.9.8 before 0.9.8zb, 1.0.0 before 1.0.0n, and 1.0.1 before 1.0.1i allows remote attackers to cause a denial of service (memory consumption) via zero-length DTLS fragments that trigger improper handling of the return value of a certain insert function.
A flaw was discovered in the way OpenSSL handled DTLS packets. A remote attacker could use this flaw to cause a DTLS server or client using OpenSSL to crash or use excessive amounts of memory.
Statement: This did not affect openssl packages in Red Hat Enterprise Linux 5 (based on upstream 0.9.8e) and openssl 1.0.0 packages in Red Hat Enterprise Linux 6 (i.e. packages released before RHBA-2013:1585, which rebased openssl from
GHSA
GHSA-6m7x-mc9c-967p: The WebRTC video-sharing feature in dom/media/MediaManager
ghsa_unreviewed·2022-05-17
CVE-2014-1585 [MEDIUM] GHSA-6m7x-mc9c-967p: The WebRTC video-sharing feature in dom/media/MediaManager
The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not properly recognize Stop Sharing actions for videos in IFRAME elements, which allows remote attackers to obtain sensitive information from the local camera by maintaining a session after the user tries to discontinue streaming.
OSV
thunderbird vulnerabilities
osv·2014-10-15·CVSS 7.5
CVE-2014-1574 [HIGH] thunderbird vulnerabilities
thunderbird vulnerabilities
Bobby Holley, Christian Holler, David Bolter, Byron Campen and Jon
Coppeard discovered multiple memory safety issues in Thunderbird. If a
user were tricked in to opening a specially crafted message with scripting
enabled, an attacker could potentially exploit these to cause a denial of
service via application crash, or execute arbitrary code with the
privileges of the user invoking Thunderbird. (CVE-2014-1574)
Atte Kettunen discovered a buffer overflow during CSS manipulation. If a
user were tricked in to opening a specially crafted message, an attacker
could potentially exploit this to cause a denial of service via
application crash or execute arbitrary code with the privileges of the
user invoking Thunderbird. (CVE-2014-1576)
Holger Fuhrmannek discovered an
OSV
firefox vulnerabilities
osv·2014-10-14·CVSS 7.5
CVE-2014-1574 [HIGH] firefox vulnerabilities
firefox vulnerabilities
Bobby Holley, Christian Holler, David Bolter, Byron Campen, Jon Coppeard,
Carsten Book, Martijn Wargers, Shih-Chiang Chien, Terrence Cole and
Jeff Walden discovered multiple memory safety issues in Firefox. If a user
were tricked in to opening a specially crafted website, an attacker could
potentially exploit these to cause a denial of service via application
crash, or execute arbitrary code with the privileges of the user invoking
Firefox. (CVE-2014-1574, CVE-2014-1575)
Atte Kettunen discovered a buffer overflow during CSS manipulation. If a
user were tricked in to opening a specially crafted website, an attacker
could potentially exploit this to cause a denial of service via
application crash or execute arbitrary code with the privileges of the
user invoking Fir
OSV
CVE-2014-1585: The WebRTC video-sharing feature in dom/media/MediaManager
osv·2014-10-14·CVSS 5.0
CVE-2014-1585 [MEDIUM] CVE-2014-1585: The WebRTC video-sharing feature in dom/media/MediaManager
The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not properly recognize Stop Sharing actions for videos in IFRAME elements, which allows remote attackers to obtain sensitive information from the local camera by maintaining a session after the user tries to discontinue streaming.
No detection rules found.
No public exploits indexed.
http://lists.fedoraproject.org/pipermail/package-announce/2014-November/141796.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2014-October/141085.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-01/msg00024.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.htmlhttp://lists.opensuse.org/opensuse-updates/2014-11/msg00000.htmlhttp://lists.opensuse.org/opensuse-updates/2014-11/msg00001.htmlhttp://lists.opensuse.org/opensuse-updates/2014-11/msg00002.htmlhttp://lists.opensuse.org/opensuse-updates/2014-11/msg00003.htmlhttp://secunia.com/advisories/61387http://secunia.com/advisories/62021http://secunia.com/advisories/62022http://secunia.com/advisories/62023http://www.debian.org/security/2014/dsa-3050http://www.debian.org/security/2014/dsa-3061http://www.mozilla.org/security/announce/2014/mfsa2014-81.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.htmlhttp://www.securityfocus.com/bid/70425http://www.securitytracker.com/id/1031028http://www.securitytracker.com/id/1031030http://www.ubuntu.com/usn/USN-2372-1http://www.ubuntu.com/usn/USN-2373-1https://bugzilla.mozilla.org/show_bug.cgi?id=1062876https://security.gentoo.org/glsa/201504-01http://lists.fedoraproject.org/pipermail/package-announce/2014-November/141796.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2014-October/141085.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-01/msg00024.htmlhttp://lists.opensuse.org/opensuse-security-announce/2015-07/msg00031.htmlhttp://lists.opensuse.org/opensuse-updates/2014-11/msg00000.htmlhttp://lists.opensuse.org/opensuse-updates/2014-11/msg00001.htmlhttp://lists.opensuse.org/opensuse-updates/2014-11/msg00002.htmlhttp://lists.opensuse.org/opensuse-updates/2014-11/msg00003.htmlhttp://secunia.com/advisories/61387http://secunia.com/advisories/62021http://secunia.com/advisories/62022http://secunia.com/advisories/62023http://www.debian.org/security/2014/dsa-3050http://www.debian.org/security/2014/dsa-3061http://www.mozilla.org/security/announce/2014/mfsa2014-81.htmlhttp://www.oracle.com/technetwork/topics/security/bulletinapr2015-2511959.htmlhttp://www.securityfocus.com/bid/70425http://www.securitytracker.com/id/1031028http://www.securitytracker.com/id/1031030http://www.ubuntu.com/usn/USN-2372-1http://www.ubuntu.com/usn/USN-2373-1https://bugzilla.mozilla.org/show_bug.cgi?id=1062876https://security.gentoo.org/glsa/201504-01
2014-10-15
Published