CyberSec.Space Logo
返回 CVE 浏览器

CVE-2014-1488

CRITICAL
10.0
CVSS Severity Score
EPSS Score0.0450%
EPSS Percentile17.73th
Published2014年2月6日
Last Modified2026年4月29日

Vulnerability Description

The Web workers implementation in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allows remote attackers to execute arbitrary code via vectors involving termination of a worker process that has performed a cross-thread object-passing operation in conjunction with use of asm.js.

Affected Platforms (CPE)

📦
Mozilla

Firefox

< 27.0
📦
Mozilla

Seamonkey

< 2.24
💻
Canonical

Ubuntu Linux

= 12.04
💻
Canonical

Ubuntu Linux

= 12.10
💻
Canonical

Ubuntu Linux

= 13.10
💻
Oracle

Solaris

= 11.3
💻
Opensuse

Opensuse

= 12.3
💻
Opensuse

Opensuse

= 13.1
💻
Suse

Linux Enterprise Desktop

= 11
💻
Suse

Linux Enterprise Server

= 11
💻
Suse

Linux Enterprise Server

= 11
💻
Suse

Linux Enterprise Software Development Kit

= 11

References & Advisories

相关漏洞威胁