Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-1550

Опубликовано: 23 июл. 2014
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 10

Описание

Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by leveraging incorrect Web Audio control-message ordering.

РелизСтатусПримечание
devel

released

31.0~b9+build1-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [31.0+build1-0ubuntu0.14.04.1]]
lucid

ignored

end of life
precise

released

31.0+build1-0ubuntu0.12.04.1
trusty

released

31.0+build1-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [31.0+build1-0ubuntu0.14.04.1]
upstream

released

31.0

Показывать по

РелизСтатусПримечание
devel

released

1:31.0+build1-0ubuntu2
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1:31.0+build1-0ubuntu0.14.04.1]]
lucid

ignored

end of life
precise

released

1:31.0+build1-0ubuntu0.12.04.1
trusty

released

1:31.0+build1-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [1:31.0+build1-0ubuntu0.14.04.1]
upstream

released

31.0

Показывать по

EPSS

Процентиль: 86%
0.02979
Низкий

10 Critical

CVSS2

Связанные уязвимости

redhat
больше 11 лет назад

Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by leveraging incorrect Web Audio control-message ordering.

nvd
больше 11 лет назад

Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by leveraging incorrect Web Audio control-message ordering.

debian
больше 11 лет назад

Use-after-free vulnerability in the MediaInputPort class in Mozilla Fi ...

github
больше 3 лет назад

Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by leveraging incorrect Web Audio control-message ordering.

fstec
больше 11 лет назад

Уязвимость программного обеспечения Thunderbird, позволяющая удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 86%
0.02979
Низкий

10 Critical

CVSS2