CVE-2014-1592
- EPSS 1.77%
- Veröffentlicht 11.12.2014 11:59:06
- Zuletzt bearbeitet 25.11.2025 17:50:16
Use-after-free vulnerability in the nsHtml5TreeOperation function in xul.dll in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allows remote attackers to execute arbitrary code by adding ...
CVE-2014-1590
- EPSS 1%
- Veröffentlicht 11.12.2014 11:59:04
- Zuletzt bearbeitet 25.11.2025 17:50:16
The XMLHttpRequest.prototype.send method in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allows remote attackers to cause a denial of service (application crash) via a crafted JavaScrip...
CVE-2014-1587
- EPSS 1.64%
- Veröffentlicht 11.12.2014 11:59:00
- Zuletzt bearbeitet 25.11.2025 17:50:16
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allow remote attackers to cause a denial of service (memory corruption and app...
- EPSS 0.7%
- Veröffentlicht 15.10.2014 10:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
The WebRTC video-sharing feature in dom/media/MediaManager.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not properly recognize Stop Sharing actions for videos in IFRAME elements, which allows...
- EPSS 0.7%
- Veröffentlicht 15.10.2014 10:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
content/base/src/nsDocument.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 does not consider whether WebRTC video sharing is occurring, which allows remote attackers to obtain sensitive information ...
CVE-2014-1574
- EPSS 1.64%
- Veröffentlicht 15.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allow remote attackers to cause a denial of service (memory corruption and application crash) or...
CVE-2014-1576
- EPSS 4.67%
- Veröffentlicht 15.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Heap-based buffer overflow in the nsTransformedTextRun function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via Cascading Style Sheets (CSS) token se...
CVE-2014-1577
- EPSS 1.29%
- Veröffentlicht 15.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The mozilla::dom::OscillatorNodeEngine::ComputeCustom function in the Web Audio subsystem in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to obtain sensitive information from proc...
CVE-2014-1578
- EPSS 1.64%
- Veröffentlicht 15.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
The get_tile function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to cause a denial of service (out-of-bounds write and application crash) or possibly execute arbitrary code v...
CVE-2014-1581
- EPSS 2.31%
- Veröffentlicht 15.10.2014 10:55:06
- Zuletzt bearbeitet 12.04.2025 10:46:40
Use-after-free vulnerability in DirectionalityUtils.cpp in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via text that is improperly handled during the in...