CVE-2014-1478: Canonical Ubuntu Linux
High severity, CVSS 10.0. EPSS: 7% chance of exploitation in the next 30 days.
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 27.0 and SeaMonkey before 2.24 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the MPostWriteBarrier class in js/src/jit/MIR.h and stack alignment in js/src/jit/AsmJS.cpp in OdinMonkey, and unknown other vectors.
Affected products
- Canonical Ubuntu Linux: version 12.04 only; version 12.10 only; version 13.10 only
- Mozilla Firefox: before 27.0 (fixed in 27.0)
- Mozilla Seamonkey: before 2.24 (fixed in 2.24)
- Opensuse Opensuse: version 11.4 only; version 12.3 only; version 13.1 only
- Oracle Solaris: version 11.3 only
Published 2014-02-06. Last modified 2026-06-17.