9.3
CVE-2014-1555
- EPSS 1.81%
- Published 23.07.2014 11:12:43
- Last modified 12.04.2025 10:46:40
- Source security@mozilla.org
- Teams watchlist Login
- Open Login
Use-after-free vulnerability in the nsDocLoader::OnProgress function in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allows remote attackers to execute arbitrary code via vectors that trigger a FireOnStateChange event.
Data is provided by the National Vulnerability Database (NVD)
Mozilla ≫ Firefox ESR Version24.0.1
Mozilla ≫ Firefox ESR Version24.0.2
Mozilla ≫ Firefox ESR Version24.2
Mozilla ≫ Firefox ESR Version24.3
Mozilla ≫ Firefox ESR Version24.4
Mozilla ≫ Firefox ESR Version24.5
Mozilla ≫ Firefox ESR Version24.6
Mozilla ≫ Thunderbird Version <= 24.6
Mozilla ≫ Thunderbird Version24.0
Mozilla ≫ Thunderbird Version24.0.1
Mozilla ≫ Thunderbird Version24.1
Mozilla ≫ Thunderbird Version24.1.1
Mozilla ≫ Thunderbird Version24.2
Mozilla ≫ Thunderbird Version24.3
Mozilla ≫ Thunderbird Version24.4
Mozilla ≫ Thunderbird Version24.5
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
Type | Source | Score | Percentile |
---|---|---|---|
EPSS | FIRST.org | 1.81% | 0.811 |
Source | Base Score | Exploit Score | Impact Score | Vector string |
---|---|---|---|---|
nvd@nist.gov | 9.3 | 8.6 | 10 |
AV:N/AC:M/Au:N/C:C/I:C/A:C
|