CVE-2014-1545

Mozilla Netscape Portable Runtime (NSPR) before 4.10.6 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds write) via vectors involving the sprintf and console functions.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
10 UNKNOWN
NETWORK
LOW
AV:N/AC:L/Au:N/C:C/I:C/A:C
mozillaCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 87%
VendorProductVersion
mozillanetscape_portable_runtime
𝑥
≤ 4.10.5
mozillanetscape_portable_runtime
4.1.1
mozillanetscape_portable_runtime
4.1.2
mozillanetscape_portable_runtime
4.2
mozillanetscape_portable_runtime
4.2.2
mozillanetscape_portable_runtime
4.3
mozillanetscape_portable_runtime
4.4.1
mozillanetscape_portable_runtime
4.5.1
mozillanetscape_portable_runtime
4.6
mozillanetscape_portable_runtime
4.6.1
mozillanetscape_portable_runtime
4.6.2
mozillanetscape_portable_runtime
4.6.3
mozillanetscape_portable_runtime
4.6.4
mozillanetscape_portable_runtime
4.6.5
mozillanetscape_portable_runtime
4.6.6
mozillanetscape_portable_runtime
4.6.7
mozillanetscape_portable_runtime
4.6.8
mozillanetscape_portable_runtime
4.7
mozillanetscape_portable_runtime
4.7.1
mozillanetscape_portable_runtime
4.7.2
mozillanetscape_portable_runtime
4.7.3
mozillanetscape_portable_runtime
4.7.4
mozillanetscape_portable_runtime
4.7.5
mozillanetscape_portable_runtime
4.7.6
mozillanetscape_portable_runtime
4.8
mozillanetscape_portable_runtime
4.8.2
mozillanetscape_portable_runtime
4.8.3
mozillanetscape_portable_runtime
4.8.4
mozillanetscape_portable_runtime
4.8.5
mozillanetscape_portable_runtime
4.8.6
mozillanetscape_portable_runtime
4.8.7
mozillanetscape_portable_runtime
4.8.8
mozillanetscape_portable_runtime
4.8.9
mozillanetscape_portable_runtime
4.9
mozillanetscape_portable_runtime
4.9.1
mozillanetscape_portable_runtime
4.9.2
mozillanetscape_portable_runtime
4.9.3
mozillanetscape_portable_runtime
4.9.4
mozillanetscape_portable_runtime
4.9.5
mozillanetscape_portable_runtime
4.9.6
mozillanetscape_portable_runtime
4.10
mozillanetscape_portable_runtime
4.10.1
mozillanetscape_portable_runtime
4.10.2
mozillanetscape_portable_runtime
4.10.3
mozillanetscape_portable_runtime
4.10.4
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
nspr
bullseye
2:4.29-1
fixed
bookworm
2:4.35-1
fixed
sid
2:4.35-1.1
fixed
trixie
2:4.35-1.1
fixed
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
nspr
trusty
Fixed 2:4.10.2-1ubuntu1.1
released
saucy
Fixed 2:4.9.5-1ubuntu1.2
released
precise
Fixed 4.9.5-0ubuntu0.12.04.3
released
lucid
ignored
References