|
280771
|
- |
|
mozilla oracle
|
firefox solaris
|
Mozilla Firefox before 31.0 does not properly restrict use of drag-and-drop events to spoof customization events, which allows remote attackers to alter the placement of UI icons via crafted JavaScri…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1561
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280772
|
- |
|
mozilla
|
thunderbird firefox
|
Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use ASCII charac…
|
NVD-CWE-Other
|
CVE-2014-1560
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280773
|
- |
|
mozilla
|
thunderbird firefox
|
Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use UTF-8 charac…
|
NVD-CWE-Other
|
CVE-2014-1559
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280774
|
- |
|
mozilla
|
thunderbird firefox
|
Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use UTF-8 charac…
|
NVD-CWE-Other
|
CVE-2014-1558
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280775
|
- |
|
oracle mozilla debian
|
solaris firefox_esr thunderbird firefox debian_linux
|
The ConvolveHorizontally function in Skia, as used in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7, does not properly handle the discarding of image data dur…
|
CWE-94
Code Injection
|
CVE-2014-1557
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280776
|
- |
|
mozilla
|
firefox_esr thunderbird firefox
|
Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allow remote attackers to execute arbitrary code via crafted WebGL content constructed with the Cesium JavaScrip…
|
CWE-94
Code Injection
|
CVE-2014-1556
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280777
|
- |
|
mozilla
|
firefox_esr thunderbird firefox
|
Use-after-free vulnerability in the nsDocLoader::OnProgress function in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 allows remote attackers to execute arbit…
|
NVD-CWE-Other
|
CVE-2014-1555
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280778
|
- |
|
mozilla
|
thunderbird firefox
|
Mozilla Firefox before 31.0 and Thunderbird before 31.0 do not properly implement the sandbox attribute of the IFRAME element, which allows remote attackers to bypass intended restrictions on same-or…
|
CWE-264
Permissions, Privileges, and Access Controls
|
CVE-2014-1552
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280779
|
- |
|
mozilla
|
firefox firefox_esr thunderbird
|
Use-after-free vulnerability in the FontTableRec destructor in Mozilla Firefox before 31.0, Firefox ESR 24.x before 24.7, and Thunderbird before 24.7 on Windows allows remote attackers to execute arb…
|
NVD-CWE-Other
|
CVE-2014-1551
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|
|
280780
|
- |
|
mozilla
|
thunderbird firefox
|
Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allows remote attackers to execute arbitrary code or cause a denial of service (hea…
|
NVD-CWE-Other
|
CVE-2014-1550
|
2024-11-21 11:04 |
2014-07-23 |
Show
|
GitHub
Exploit DB
Packet Storm
|
|
|