CVE-2014-1549
23.07.2014, 11:12
The mozilla::dom::AudioBufferSourceNodeEngine::CopyFromInputBuffer function in Mozilla Firefox before 31.0 and Thunderbird before 31.0 does not properly allocate Web Audio buffer memory, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via crafted audio content that is improperly handled during playback buffering.Enginsight
Vendor | Product | Version |
---|---|---|
mozilla | firefox | 𝑥 ≤ 30.0 |
mozilla | thunderbird | 𝑥 ≤ 24.7 |
mozilla | thunderbird | 24.0 |
mozilla | thunderbird | 24.0.1 |
mozilla | thunderbird | 24.1 |
mozilla | thunderbird | 24.1.1 |
mozilla | thunderbird | 24.2 |
mozilla | thunderbird | 24.3 |
mozilla | thunderbird | 24.4 |
mozilla | thunderbird | 24.5 |
mozilla | thunderbird | 24.6 |
𝑥
= Vulnerable software versions

Ubuntu Releases
Common Weakness Enumeration
References