Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2014-1585 | Buffer overflow in the _cairo_truetype_index_to_ucs4 function in cairo, as used in Mozilla Firefox before 28.0, Firefox ESR 24.x before 24.4, Thunderbird before 24.4, and SeaMonkey before 2.25, allows remote attackers to execute arbitrary code via a crafted extension that renders fonts in a PDF document. |
Ubuntu USN |
USN-2150-1 | Firefox vulnerabilities |
Ubuntu USN |
USN-2151-1 | Thunderbird vulnerabilities |
Tue, 25 Nov 2025 18:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| CPEs | ||
| Vendors & Products |
Mozilla firefox Esr
|
Subscriptions
Status: PUBLISHED
Assigner: mozilla
Published:
Updated: 2024-08-06T09:42:36.199Z
Reserved: 2014-01-16T00:00:00.000Z
Link: CVE-2014-1509
No data.
Status : Modified
Published: 2014-03-19T10:55:06.600
Modified: 2026-06-17T00:05:01.940
Link: CVE-2014-1509
OpenCVE Enrichment
No data.
-
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
EUVD
Ubuntu USN