CVE-2014-1507
19.03.2014, 10:55
Directory traversal vulnerability in the DeviceStorage API in Mozilla FirefoxOS before 1.2.2 allows attackers to bypass the media sandbox protection mechanism, and read or modify arbitrary files, via a crafted application that uses a relative pathname for a DeviceStorageFile object.
| Vendor | Product | Version |
|---|---|---|
| oracle | solaris | 11.3 |
| mozilla | firefoxos | 𝑥 ≤ 1.2 |
𝑥
= Vulnerable software versions
Ubuntu Releases
References