CVE-2014-1508
CVSS v3.1
9.1 (Critical)
CVSS v2.0
6.4 (Medium)
EPSS
3.92 % (92th)
Affected Products
17
Advisories
10
The libxul.so!gfxContext::Polygon function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive information from process memory, cause a denial of service (out-of-bounds read and application crash), or possibly bypass the Same Origin Policy via vectors involving MathML polygon rendering.
Weaknesses
- CWE-125
- Out-of-bounds Read
- CVE Status
- PUBLISHED
- CNA
- Mozilla Corporation
- Published Date
-
2014-03-19 10:55:06
(10 years ago) - Updated Date
-
2020-08-03 16:04:59
(4 years ago)
Affected Products
Loading...
Loading...
Loading...
Configuration #1
|
Configuration #2
|
Configuration #3
|
Configuration #4
|
Configuration #5
|
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...