CVE-2014-1555

Firefox < 31.0 and Firefox ESR < 24.7 - Use-After-Free via FireOnStateChange Event

Title source: llm
STIX 2.1

Description

Use-after-free vulnerability in the nsDocLoader::OnProgress function in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allows remote attackers to execute arbitrary code via vectors that trigger a FireOnStateChange event.

References (18)

Core 18
Core References
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/68814
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/59719
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/60083
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/60621
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/60306
Various Sources x_refsource_confirm
http://linux.oracle.com/errata/ELSA-2014-0918.html
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1030620
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2014/dsa-2996
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id/1030619
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/60486
Issue Tracking x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=1023121
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/60628
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2014/dsa-2986
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/59760
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/59591
Third Party Advisory vendor-advisory x_refsource_gentoo
https://security.gentoo.org/glsa/201504-01

Scores

EPSS 0.0336
EPSS Percentile 87.5%

Details

Status published
Products (20)
mozilla/firefox 24.0
mozilla/firefox 24.0.1
mozilla/firefox 24.0.2
mozilla/firefox 24.1.0
mozilla/firefox 24.1.1
mozilla/firefox < 30.0
mozilla/firefox_esr 24.2
mozilla/firefox_esr 24.3
mozilla/firefox_esr 24.4
mozilla/firefox_esr 24.5
... and 10 more
Published Jul 23, 2014
Tracked Since Feb 18, 2026