CVE-2014-1580
Publication date 14 October 2014
Last updated 24 July 2024
Ubuntu priority
Description
Mozilla Firefox before 33.0 does not properly initialize memory for GIF images, which allows remote attackers to obtain sensitive information from process memory via a crafted web page that triggers a sequence of rendering operations for truncated GIF data within a CANVAS element.
Status
| Package | Ubuntu Release | Status |
|---|---|---|
| firefox | 14.04 LTS trusty |
Fixed 33.0+build2-0ubuntu0.14.04.1
|
References
Related Ubuntu Security Notices (USN)
- USN-2372-1
- Firefox vulnerabilities
- 14 October 2014