Skip to content
Appaloosa Scout

Vulnerability · NVD

CVE-2014-1549

N/A

The mozilla::dom::AudioBufferSourceNodeEngine::CopyFromInputBuffer function in Mozilla Firefox before 31.0 and Thunderbird before 31.0 does not properly allocate Web Audio buffer memory, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via crafted audio content that is improperly handled during playback buffering.

EPSS 5.64% above median percentile 92.2%

Tracked apps referencing this CVE

For each app: the affected range, the fixing version, and where the tracked app stands today.

Vulnerable CPE configurations (10)
Vendor Product Versions
mozilla thunderbird
All platforms (wildcard)
≤24.7
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
mozilla thunderbird
All platforms (wildcard)
View on NVD ↗ Advisory · www.mozilla.org