CVE-2014-1543
Multiple heap-based buffer overflows in the navigator.getGamepads function in the Gamepad API in Mozilla Firefox before 30.0 allow remote attackers to execute arbitrary code by using non-contiguous axes with a (1) physical or (2) virtual Gamepad device.
Ver en NVDSeveridad
N/A
EPSS
Probabilidad de explotación (próx. 30 días): 0.0340 (3.4%)
Percentil: 87.5%
EPSS: 2026-05-06
Afecta
mozilla:firefoxDescripción técnica
Multiple heap-based buffer overflows in the navigator.getGamepads function in the Gamepad API in Mozilla Firefox before 30.0 allow remote attackers to execute arbitrary code by using non-contiguous axes with a (1) physical or (2) virtual Gamepad device.
Publicada: 11/6/2014, 10:57:18
Última modificación: 6/5/2026, 22:30:45
Referencias
- http://lists.opensuse.org/opensuse-updates/2014-06/msg00040.html
- http://lists.opensuse.org/opensuse-updates/2014-07/msg00001.html
- http://secunia.com/advisories/59171
- http://secunia.com/advisories/59387
- http://secunia.com/advisories/59486
- http://secunia.com/advisories/59866
- http://www.mozilla.org/security/announce/2014/mfsa2014-54.html
- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html