← Terug naar CVE-database
Beschrijving
The mozilla::WaveReader::DecodeAudioData function in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25 allows remote attackers to obtain sensitive information from process heap memory, cause a denial of service (out-of-bounds read and application crash), or possibly have unspecified other impact via a crafted WAV file.
Vendors
Mozilla
Debian
Suse
Opensuse
Canonical
Redhat
Affected products
Firefox
Seamonkey
Thunderbird
Debian Linux
Suse Linux Enterprise Software Development Kit
Opensuse
Suse Linux Enterprise Desktop
Suse Linux Enterprise Server
Ubuntu Linux
Enterprise Linux Desktop
Enterprise Linux Eus
Enterprise Linux Server
Enterprise Linux Server Aus
Enterprise Linux Server Eus
Enterprise Linux Server Tus
Enterprise Linux Workstation