CVE-2014-1587

Mozilla Firefox <34 - Memory Corruption

Title source: llm
STIX 2.1

Description

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, Thunderbird before 31.3, and SeaMonkey before 2.31 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

References (13)

Core 13
Core References
Issue Tracking x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=1080312
Issue Tracking x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=1042567
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/71391
Third Party Advisory vendor-advisory x_refsource_gentoo
https://security.gentoo.org/glsa/201504-01
Issue Tracking x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=1079729
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2014/dsa-3090
Issue Tracking x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=1072847
Issue Tracking x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=1089207
Third Party Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2014/dsa-3092

Scores

EPSS 0.0164
EPSS Percentile 82.2%

Details

CWE
CWE-20
Status published
Products (3)
mozilla/firefox < 31.2
mozilla/seamonkey < 2.30
mozilla/thunderbird < 31.2
Published Dec 11, 2014
Tracked Since Feb 18, 2026