Lucene search

K
cve[email protected]CVE-2014-1537
HistoryJun 11, 2014 - 10:57 a.m.

CVE-2014-1537

2014-06-1110:57:17
web.nvd.nist.gov
38
cve-2014-1537
mozilla firefox
remote code execution
denial of service
heap memory corruption
nvd

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

9.5

Confidence

High

EPSS

0.082

Percentile

94.4%

Use-after-free vulnerability in the mozilla::dom::workers::WorkerPrivateParent function in Mozilla Firefox before 30.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.

Affected configurations

NVD
Node
mozillafirefoxRange29.0.1
VendorProductVersionCPE
mozillafirefoxcpe:/a:mozilla:firefox::::

References

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

AI Score

9.5

Confidence

High

EPSS

0.082

Percentile

94.4%