Lucene search

K
cveMozillaCVE-2014-8635
HistoryJan 14, 2015 - 11:59 a.m.

CVE-2014-8635

2015-01-1411:59:04
mozilla
web.nvd.nist.gov
44
cve-2014-8635
mozilla firefox
seamonkey
memory corruption
application crash
remote attackers
denial of service
arbitrary code

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

9.9

Confidence

High

EPSS

0.264

Percentile

96.8%

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 35.0 and SeaMonkey before 2.32 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

Affected configurations

Nvd
Node
mozillaseamonkeyRange2.31
Node
mozillafirefoxRange34.0.5
VendorProductVersionCPE
mozillaseamonkey*cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:*
mozillafirefox*cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*

References

CVSS2

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

AI Score

9.9

Confidence

High

EPSS

0.264

Percentile

96.8%