CVE-2014-1550
Publication date 22 July 2014
Last updated 24 July 2024
Ubuntu priority
Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by leveraging incorrect Web Audio control-message ordering.
Status
Package | Ubuntu Release | Status |
---|---|---|
firefox | 14.04 LTS trusty |
Fixed 31.0+build1-0ubuntu0.14.04.1
|
thunderbird | 14.04 LTS trusty |
Fixed 1:31.0+build1-0ubuntu0.14.04.1
|
References
Related Ubuntu Security Notices (USN)
- USN-2296-1
- Thunderbird vulnerabilities
- 22 July 2014
- USN-2295-1
- Firefox vulnerabilities
- 22 July 2014