CVE-2014-1567: Use After Free
Use-after-free vulnerability in DirectionalityUtils.cpp in Mozilla Firefox before 32.0, Firefox ESR 24.x before 24.8 and 31.x before 31.1, and Thunderbird 24.x before 24.8 and 31.x before 31.1 allows remote attackers to execute arbitrary code via text that is improperly handled during the interaction between directionality resolution and layout.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2014-1567?
CVE-2014-1567 is classified as a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2014-1567?
To fix CVE-2014-1567, update Mozilla Firefox or Thunderbird to version 32.0 or later, or ensure you are using Firefox ESR 24.8 or Thunderbird 31.1.
What products are affected by CVE-2014-1567?
CVE-2014-1567 affects Mozilla Firefox versions prior to 32.0, Firefox ESR versions before 24.8, and Thunderbird versions before 31.1.
How does CVE-2014-1567 impact users?
CVE-2014-1567 can lead to arbitrary code execution, which may compromise user data and system integrity if successfully exploited.
Are there any workarounds for CVE-2014-1567?
There are no known workarounds for CVE-2014-1567; users are strongly encouraged to update their software to mitigate the vulnerability.