Lucene search

K
cvelistMozillaCVELIST:CVE-2014-1498
HistoryMar 19, 2014 - 10:00 a.m.

CVE-2014-1498

2014-03-1910:00:00
mozilla
www.cve.org

8.9 High

AI Score

Confidence

High

0.029 Low

EPSS

Percentile

90.9%

The crypto.generateCRMFRequest method in Mozilla Firefox before 28.0 and SeaMonkey before 2.25 does not properly validate a certain key type, which allows remote attackers to cause a denial of service (application crash) via vectors that trigger generation of a key that supports the Elliptic Curve ec-dual-use algorithm.

8.9 High

AI Score

Confidence

High

0.029 Low

EPSS

Percentile

90.9%