CVE-2014-1550

Priority
Medium
Description
Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox
before 31.0 and Thunderbird before 31.0 allows remote attackers to execute
arbitrary code or cause a denial of service (heap memory corruption) by
leveraging incorrect Web Audio control-message ordering.
References
Assigned-to
chrisccoulson
Package
Upstream:released (31.0)
Ubuntu 12.04 LTS (Precise Pangolin):released (1:31.0+build1-0ubuntu0.12.04.1)
Ubuntu 14.04 LTS (Trusty Tahr):released (1:31.0+build1-0ubuntu0.14.04.1)
Package
Upstream:released (31.0)
Ubuntu 12.04 LTS (Precise Pangolin):released (31.0+build1-0ubuntu0.12.04.1)
Ubuntu 14.04 LTS (Trusty Tahr):released (31.0+build1-0ubuntu0.14.04.1)
More Information

Valid XHTML 1.0 Strict

Updated: 2015-07-29 20:42:25 UTC (commit 9756)