Mozilla: Buffer overflow during Web Audio buffering for playback (MFSA 2014-57)
Published Jul 23, 2014
9.3
HIGHCVSS 2.0
EPSS 5.64%
Description
The mozilla::dom::AudioBufferSourceNodeEngine::CopyFromInputBuffer function in Mozilla Firefox before 31.0 and Thunderbird before 31.0 does not properly allocate Web Audio buffer memory, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via crafted audio content that is improperly handled during playback buffering.
Affected products
No data.
- ≤ 30.0
- ≤ 24.7
- 24.0
- 24.0.1
- 24.1
- 24.1.1
- 24.2
- 24.3
- 24.4
- 24.5
- 24.6
No data.
Red Hat Enterprise Linux 5
firefox
Not affected
Red Hat Enterprise Linux 5
thunderbird
Not affected
Red Hat Enterprise Linux 6
firefox
Not affected
Red Hat Enterprise Linux 6
thunderbird
Not affected
| Product | Package | State | Advisory |
|---|---|---|---|
| Red Hat Enterprise Linux 5 | firefox | Not affected | n/a |
| Red Hat Enterprise Linux 5 | thunderbird | Not affected | n/a |
| Red Hat Enterprise Linux 6 | firefox | Not affected | n/a |
| Red Hat Enterprise Linux 6 | thunderbird | Not affected | n/a |
No package ranges for this CVE.
Remediation
Red Hat statement
This issue does not affect the version of thunderbird as shipped with Red Hat Enterprise Linux 5 and 6, or the version of firefox as shipped with Red Hat Enterprise Linux 5, 6, and 7.
References (14)
- http://secunia.com/advisories/59760 third-party-advisoryx_refsource_SECUNIA
- http://secunia.com/advisories/60628 third-party-advisoryx_refsource_SECUNIA
- http://www.mozilla.org/security/announce/2014/mfsa2014-57.html x_refsource_CONFIRMVendor Advisory
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html x_refsource_CONFIRM
- http://www.securityfocus.com/bid/68820 vdb-entryx_refsource_BID
- http://www.securitytracker.com/id/1030619 vdb-entryx_refsource_SECTRACK
- http://www.securitytracker.com/id/1030620 vdb-entryx_refsource_SECTRACK
- https://access.redhat.com/security/cve/CVE-2014-1549 Vendor Advisory
- https://bugzilla.mozilla.org/show_bug.cgi?id=1020205 x_refsource_CONFIRM
- https://bugzilla.redhat.com/show_bug.cgi?id=1121470 Issue Tracking
- https://euvd.enisa.europa.eu/vulnerability/EUVD-2014-1625 Advisory
- https://nvd.nist.gov/vuln/detail/CVE-2014-1549
- https://security.gentoo.org/glsa/201504-01 vendor-advisoryx_refsource_GENTOO
- https://www.cve.org/CVERecord?id=CVE-2014-1549
Change history (0)
No recorded changes yet.