CVE-2014-1567

N/A Unknown
Published: September 03, 2014 Modified: November 25, 2025

Description

Use-after-free vulnerability in DirectionalityUtils.cpp in Mozilla Firefox before 32.0, Firefox ESR 24.x before 24.8 and 31.x before 31.1, and Thunderbird 24.x before 24.8 and 31.x before 31.1 allows remote attackers to execute arbitrary code via text that is improperly handled during the interaction between directionality resolution and layout.

AI Explanation

Get an AI-powered plain-language explanation of this vulnerability and remediation steps.

Login to generate AI explanation

References to Advisories, Solutions, and Tools

Patch Vendor Advisory Exploit Third Party Advisory
http://secunia.com/advisories/60148
Source: security@mozilla.org
http://secunia.com/advisories/60186
Source: security@mozilla.org
http://secunia.com/advisories/61114
Source: security@mozilla.org
http://secunia.com/advisories/61390
Source: security@mozilla.org
http://www.mozilla.org/security/announce/2014/mfsa2014-72.html
Source: security@mozilla.org
Vendor Advisory
http://www.securityfocus.com/bid/69520
Source: security@mozilla.org
http://www.securitytracker.com/id/1030793
Source: security@mozilla.org
http://www.securitytracker.com/id/1030794
Source: security@mozilla.org
http://lists.opensuse.org/opensuse-updates/2014-09/msg00011.html
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/60148
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/60186
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/61114
Source: af854a3a-2127-422b-91ae-364da2661108
http://secunia.com/advisories/61390
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2014/dsa-3018
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.debian.org/security/2014/dsa-3028
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.mozilla.org/security/announce/2014/mfsa2014-72.html
Source: af854a3a-2127-422b-91ae-364da2661108
Vendor Advisory
http://www.securityfocus.com/bid/69520
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id/1030793
Source: af854a3a-2127-422b-91ae-364da2661108
http://www.securitytracker.com/id/1030794
Source: af854a3a-2127-422b-91ae-364da2661108
https://bugzilla.mozilla.org/show_bug.cgi?id=1037641
Source: af854a3a-2127-422b-91ae-364da2661108
https://security.gentoo.org/glsa/201504-01
Source: af854a3a-2127-422b-91ae-364da2661108

40 reference(s) from NVD

Quick Stats

CVSS v3 Score
N/A / 10.0
EPSS (Exploit Probability)
1.8%
82th percentile
Exploitation Status
Not in CISA KEV

Affected Vendors

mozilla