Sploitus

CVE-2014-1488

1 known exploit for CVE-2014-1488

The Web workers implementation in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allows remote attackers to execute arbitrary code via vectors involving termination of a worker process that has performed a cross-thread object-passing operation in conjunction with use of asm.js.

Affected products
Alt Linux, Firefox, Seamonkey, Suse
Mozilla Firefox
< 27.0
Mozilla Seamonkey
< 2.24
Fix
Available
CVSS 2.0
10.0 HIGH
EPSS
7.2% (94th percentile)
NVD status
Modified
Published
2014-02-06
CVE-2014-1488 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2014-1488

Proof-of-concept code and exploit modules indexed by Sploitus