7.5
CVSSv2

CVE-2014-1543

Published: 11/06/2014 Updated: 28/12/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Multiple heap-based buffer overflows in the navigator.getGamepads function in the Gamepad API in Mozilla Firefox prior to 30.0 allow remote malicious users to execute arbitrary code by using non-contiguous axes with a (1) physical or (2) virtual Gamepad device.

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox

Vendor Advisories

Mozilla Foundation Security Advisory 2014-54 Buffer overflow in Gamepad API Announced June 10, 2014 Reporter Looben Yang Impact High Products Firefox, SeaMonkey Fixed in Firefox 30 ...
Multiple heap-based buffer overflows in the navigatorgetGamepads function in the Gamepad API in Mozilla Firefox before 300 allow remote attackers to execute arbitrary code by using non-contiguous axes with a (1) physical or (2) virtual Gamepad device ...