CVE-2014-1549 (retired)

Priority
Description
The mozilla::dom::AudioBufferSourceNodeEngine::CopyFromInputBuffer function
in Mozilla Firefox before 31.0 and Thunderbird before 31.0 does not
properly allocate Web Audio buffer memory, which allows remote attackers to
execute arbitrary code or cause a denial of service (buffer overflow and
application crash) via crafted audio content that is improperly handled
during playback buffering.
Assigned-to
chrisccoulson
Package
Upstream:released (31.0)
Ubuntu 14.04 ESM (Trusty Tahr):released (31.0~b9+build1-0ubuntu1)
Package
Priority: Low
Upstream:released (31.0)
Ubuntu 14.04 ESM (Trusty Tahr):released (1:31.0+build1-0ubuntu2)
More Information

Updated: 2019-09-19 15:48:13 UTC (commit d32ebc32606b9517c6fa7d65a15441e2a57a6de5)