299,643
Total vulnerabilities in the database
The mozilla::dom::AudioBufferSourceNodeEngine::CopyFromInputBuffer function in Mozilla Firefox before 31.0 and Thunderbird before 31.0 does not properly allocate Web Audio buffer memory, which allows remote attackers to execute arbitrary code or cause a denial of service (buffer overflow and application crash) via crafted audio content that is improperly handled during playback buffering.
| Software | From | Fixed in |
|---|---|---|
| mozilla / thunderbird | - | 24.7.x |
| mozilla / thunderbird | 24.0.1 | 24.0.1.x |
| mozilla / thunderbird | 24.2 | 24.2.x |
| mozilla / firefox | - | 30.0.x |
| mozilla / thunderbird | 24.5 | 24.5.x |
| mozilla / thunderbird | 24.1 | 24.1.x |
| mozilla / thunderbird | 24.1.1 | 24.1.1.x |
| mozilla / thunderbird | 24.4 | 24.4.x |
| mozilla / thunderbird | 24.3 | 24.3.x |
| mozilla / thunderbird | 24.0 | 24.0.x |
| mozilla / thunderbird | 24.6 | 24.6.x |