Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2014-1564

Опубликовано: 03 сент. 2014
Источник: ubuntu
Приоритет: medium
EPSS Средний
CVSS2: 4.3

Описание

Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 do not properly initialize memory for GIF rendering, which allows remote attackers to obtain sensitive information from process memory via crafted web script that interacts with a CANVAS element associated with a malformed GIF image.

РелизСтатусПримечание
devel

released

32.0+build1-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [32.0+build1-0ubuntu0.14.04.1]]
lucid

ignored

end of life
precise

released

32.0+build1-0ubuntu0.12.04.1
trusty

released

32.0+build1-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [32.0+build1-0ubuntu0.14.04.1]
upstream

released

32.0

Показывать по

РелизСтатусПримечание
devel

released

1:31.1.0+build2-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [1:31.1.1+build1-0ubuntu0.14.04.1]]
lucid

ignored

end of life
precise

released

1:31.1.0+build2-0ubuntu0.12.04.1
trusty

released

1:31.1.1+build1-0ubuntu0.14.04.1
trusty/esm

DNE

trusty was released [1:31.1.1+build1-0ubuntu0.14.04.1]
upstream

released

31.1.0

Показывать по

EPSS

Процентиль: 94%
0.15414
Средний

4.3 Medium

CVSS2

Связанные уязвимости

redhat
около 11 лет назад

Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 do not properly initialize memory for GIF rendering, which allows remote attackers to obtain sensitive information from process memory via crafted web script that interacts with a CANVAS element associated with a malformed GIF image.

nvd
около 11 лет назад

Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 do not properly initialize memory for GIF rendering, which allows remote attackers to obtain sensitive information from process memory via crafted web script that interacts with a CANVAS element associated with a malformed GIF image.

debian
около 11 лет назад

Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunder ...

github
больше 3 лет назад

Mozilla Firefox before 32.0, Firefox ESR 31.x before 31.1, and Thunderbird 31.x before 31.1 do not properly initialize memory for GIF rendering, which allows remote attackers to obtain sensitive information from process memory via crafted web script that interacts with a CANVAS element associated with a malformed GIF image.

fstec
около 11 лет назад

Уязвимость программного обеспечения Thunderbird, позволяющая удаленному злоумышленнику нарушить конфиденциальность защищаемой информации

EPSS

Процентиль: 94%
0.15414
Средний

4.3 Medium

CVSS2