CVE
- Id
- 68836
- CVE No.
- CVE-2014-1541
- Status
- Candidate
- Description
- Use-after-free vulnerability in the RefreshDriverTimer::TickDriver function in the SMIL Animation Controller in Mozilla Firefox before 30.0, Firefox ESR 24.x before 24.6, and Thunderbird before 24.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via crafted web content.
- Phase
- Assigned (20140116)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
661689 | 68836 | CVE-2014-1541 | CONFIRM:http://www.mozilla.org/security/announce/2014/mfsa2014-52.html | View |
661690 | 68836 | CVE-2014-1541 | CONFIRM:https://bugzilla.mozilla.org/show_bug.cgi?id=1000185 | View |
661691 | 68836 | CVE-2014-1541 | CONFIRM:http://linux.oracle.com/errata/ELSA-2014-0741.html | View |
661692 | 68836 | CVE-2014-1541 | CONFIRM:http://linux.oracle.com/errata/ELSA-2014-0742.html | View |
661693 | 68836 | CVE-2014-1541 | CONFIRM:http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html | View |
661694 | 68836 | CVE-2014-1541 | GENTOO:GLSA-201504-01 | View |
661695 | 68836 | CVE-2014-1541 | URL:https://security.gentoo.org/glsa/201504-01 | View |
661696 | 68836 | CVE-2014-1541 | SUSE:openSUSE-SU-2014:0855 | View |
661697 | 68836 | CVE-2014-1541 | URL:http://lists.opensuse.org/opensuse-updates/2014-07/msg00001.html | View |
661698 | 68836 | CVE-2014-1541 | SUSE:openSUSE-SU-2014:0858 | View |
661699 | 68836 | CVE-2014-1541 | URL:http://lists.opensuse.org/opensuse-updates/2014-07/msg00004.html | View |
661700 | 68836 | CVE-2014-1541 | BID:67979 | View |
661701 | 68836 | CVE-2014-1541 | URL:http://www.securityfocus.com/bid/67979 | View |
661702 | 68836 | CVE-2014-1541 | SECTRACK:1030386 | View |
661703 | 68836 | CVE-2014-1541 | URL:http://www.securitytracker.com/id/1030386 | View |
661704 | 68836 | CVE-2014-1541 | SECTRACK:1030388 | View |
661705 | 68836 | CVE-2014-1541 | URL:http://www.securitytracker.com/id/1030388 | View |
661706 | 68836 | CVE-2014-1541 | SECUNIA:58984 | View |
661707 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/58984 | View |
661708 | 68836 | CVE-2014-1541 | SECUNIA:59052 | View |
661709 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59052 | View |
661710 | 68836 | CVE-2014-1541 | SECUNIA:59149 | View |
661711 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59149 | View |
661712 | 68836 | CVE-2014-1541 | SECUNIA:59150 | View |
661713 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59150 | View |
661714 | 68836 | CVE-2014-1541 | SECUNIA:59165 | View |
661715 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59165 | View |
661716 | 68836 | CVE-2014-1541 | SECUNIA:59169 | View |
661717 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59169 | View |
661718 | 68836 | CVE-2014-1541 | SECUNIA:59170 | View |
661719 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59170 | View |
661720 | 68836 | CVE-2014-1541 | SECUNIA:59171 | View |
661721 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59171 | View |
661722 | 68836 | CVE-2014-1541 | SECUNIA:59229 | View |
661723 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59229 | View |
661724 | 68836 | CVE-2014-1541 | SECUNIA:59275 | View |
661725 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59275 | View |
661726 | 68836 | CVE-2014-1541 | SECUNIA:59866 | View |
661727 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59866 | View |
661728 | 68836 | CVE-2014-1541 | SECUNIA:59377 | View |
661729 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59377 | View |
661730 | 68836 | CVE-2014-1541 | SECUNIA:59387 | View |
661731 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59387 | View |
661732 | 68836 | CVE-2014-1541 | SECUNIA:59328 | View |
661733 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59328 | View |
661734 | 68836 | CVE-2014-1541 | SECUNIA:59425 | View |
661735 | 68836 | CVE-2014-1541 | URL:http://secunia.com/advisories/59425 | View |
661736 | 68836 | CVE-2014-1541 | SECUNIA:59486 | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
14654 | JVNDB-2014-003529 | Mozilla Firefox および Thunderbird の mozilla::dom::AudioBufferSourceNodeEngine::CopyFromInputBuffer 関数における任意のコードを実行される脆弱性 | Mozilla Firefox および Thunderbird の mozilla::dom::AudioBufferSourceNodeEngine::CopyFromInputBuffer 関数は、Web Audio バッファメモリを適切に割り当てないため、任意のコードを実行される、またはサービス運用妨害 (バッファオーバーフローおよびアプリケーションクラッシュ) 状態にされる脆弱性が存在します。 | CVE-2014-1549 | 68836 | 9.3 | http://jvndb.jvn.jp/ja/contents/2014/JVNDB-2014-003529.html | View |