Heap-based buffer overflow in the nsTransformedTextRun function in Mozilla Firefox before 33.0, Firefox ESR 31.x before 31.2, and Thunderbird 31.x before 31.2 allows remote attackers to execute arbitrary code via Cascading Style Sheets (CSS) token sequences that trigger changes to capitalization style.
Metrics
Affected Vendors & Products
References
History
Mon, 21 Oct 2024 14:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
CPEs | cpe:2.3:a:mozilla:firefox_esr:31.1.0:*:*:*:*:*:*:* |
|
Vendors & Products |
Mozilla firefox Esr
|

Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2024-08-06T09:42:36.219Z
Reserved: 2014-01-16T00:00:00
Link: CVE-2014-1576

No data.

Status : Modified
Published: 2014-10-15T10:55:06.677
Modified: 2024-11-21T02:04:38.403
Link: CVE-2014-1576
