Skip to content

CVE-2014-1550

Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by leveraging incorrect Web Audio control-message ordering.

View on NVD

Severity

N/A

EPSS

Probability of exploitation (next 30 days): 0.0376 (3.8%)
Percentile: 88.1%
EPSS: 2026-05-06

Affects

mozilla:firefoxmozilla:thunderbird

Technical description

Use-after-free vulnerability in the MediaInputPort class in Mozilla Firefox before 31.0 and Thunderbird before 31.0 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) by leveraging incorrect Web Audio control-message ordering.

Published: 7/23/2014, 11:12:42 AM
Last modified: 5/6/2026, 10:30:45 PM

References

HomeEventsBlogResourcesTeam