CVE-2014-1529
- EPSS 1.11%
- Veröffentlicht 30.04.2014 10:49:04
- Zuletzt bearbeitet 25.11.2025 17:50:16
The Web Notification API in Mozilla Firefox before 29.0, Firefox ESR 24.x before 24.5, Thunderbird before 24.5, and SeaMonkey before 2.26 allows remote attackers to bypass intended source-component restrictions and execute arbitrary JavaScript code i...
CVE-2014-0181
- EPSS 0.03%
- Veröffentlicht 27.04.2014 00:55:05
- Zuletzt bearbeitet 12.04.2025 10:46:40
The Netlink implementation in the Linux kernel through 3.14.1 does not provide a mechanism for authorizing socket operations based on the opener of a socket, which allows local users to bypass intended access restrictions and modify network configura...
CVE-2014-2706
- EPSS 3.1%
- Veröffentlicht 14.04.2014 23:55:07
- Zuletzt bearbeitet 12.04.2025 10:46:40
Race condition in the mac80211 subsystem in the Linux kernel before 3.13.7 allows remote attackers to cause a denial of service (system crash) via network traffic that improperly interacts with the WLAN_STA_PS_STA state (aka power-save mode), related...
- EPSS 1.47%
- Veröffentlicht 19.03.2014 10:55:06
- Zuletzt bearbeitet 25.11.2025 17:50:16
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allow remote attackers to cause a denial of service (memory corruption and app...
CVE-2014-1496
- EPSS 0.06%
- Veröffentlicht 19.03.2014 10:55:06
- Zuletzt bearbeitet 25.11.2025 17:50:16
Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 might allow local users to gain privileges by modifying the extracted Mar contents during an update.
CVE-2014-1497
- EPSS 0.5%
- Veröffentlicht 19.03.2014 10:55:06
- Zuletzt bearbeitet 25.11.2025 17:50:16
The mozilla::WaveReader::DecodeAudioData function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive information from process heap memory, cause...
CVE-2014-1505
- EPSS 0.54%
- Veröffentlicht 19.03.2014 10:55:06
- Zuletzt bearbeitet 25.11.2025 17:50:16
The SVG filter implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive displacement-correlation information, and possibly bypass the S...
CVE-2014-1508
- EPSS 0.99%
- Veröffentlicht 19.03.2014 10:55:06
- Zuletzt bearbeitet 25.11.2025 17:50:16
The libxul.so!gfxContext::Polygon function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive information from process memory, cause a denial of...
CVE-2014-1509
- EPSS 0.81%
- Veröffentlicht 19.03.2014 10:55:06
- Zuletzt bearbeitet 25.11.2025 17:50:16
Buffer overflow in the _cairo_truetype_index_to_ucs4 function in cairo, as used in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25, allows remote attackers to execute arbitrary code via a ...
CVE-2014-1510
- EPSS 76.45%
- Veröffentlicht 19.03.2014 10:55:06
- Zuletzt bearbeitet 25.11.2025 17:50:16
The Web IDL implementation in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to execute arbitrary JavaScript code with chrome privileges by using an IDL fragment t...