cve/2014/CVE-2014-1595.md
2024-05-26 14:27:05 +02:00

968 B

CVE-2014-1595

Description

Mozilla Firefox before 34.0, Firefox ESR 31.x before 31.3, and Thunderbird before 31.3 on Apple OS X 10.10 omit a CoreGraphics disable-logging action that is needed by jemalloc-based applications, which allows local users to obtain sensitive information by reading /tmp files, as demonstrated by credential information.

POC

Reference

Github

No PoCs found on GitHub currently.