CVE Vulnerabilities

CVE-2014-1560

Published: Jul 23, 2014 | Modified: Jan 07, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.3 MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:P/I:N/A:N
RedHat/V3
Ubuntu
LOW

Mozilla Firefox before 31.0 and Thunderbird before 31.0 allow remote attackers to cause a denial of service (X.509 certificate parsing outage) via a crafted certificate that does not use ASCII character encoding in a required context.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla * 30.0 (including)
Thunderbird Mozilla * 24.7 (including)
Thunderbird Mozilla 24.0 (including) 24.0 (including)
Thunderbird Mozilla 24.0.1 (including) 24.0.1 (including)
Thunderbird Mozilla 24.1 (including) 24.1 (including)
Thunderbird Mozilla 24.1.1 (including) 24.1.1 (including)
Thunderbird Mozilla 24.2 (including) 24.2 (including)
Thunderbird Mozilla 24.3 (including) 24.3 (including)
Thunderbird Mozilla 24.4 (including) 24.4 (including)
Thunderbird Mozilla 24.5 (including) 24.5 (including)
Thunderbird Mozilla 24.6 (including) 24.6 (including)
Firefox Ubuntu devel *
Firefox Ubuntu lucid *
Firefox Ubuntu precise *
Firefox Ubuntu trusty *
Firefox Ubuntu upstream *
Thunderbird Ubuntu devel *
Thunderbird Ubuntu lucid *
Thunderbird Ubuntu precise *
Thunderbird Ubuntu trusty *
Thunderbird Ubuntu upstream *

References