Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to spoof the domain name in the WebRTC (1) camera or (2) microphone permission prompt by triggering navigation at a certain time during generation of this prompt.
Advisories
Source ID Title
EUVD EUVD EUVD-2014-1575 Mozilla Firefox before 28.0 and SeaMonkey before 2.25 allow remote attackers to spoof the domain name in the WebRTC (1) camera or (2) microphone permission prompt by triggering navigation at a certain time during generation of this prompt.
Ubuntu USN Ubuntu USN USN-2150-1 Firefox vulnerabilities
Fixes

Solution

No solution given by the vendor.


Workaround

No workaround given by the vendor.

History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mozilla

Published:

Updated: 2024-08-06T09:42:36.271Z

Reserved: 2014-01-16T00:00:00

Link: CVE-2014-1499

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Deferred

Published: 2014-03-19T10:55:06.380

Modified: 2025-04-12T10:46:40.837

Link: CVE-2014-1499

cve-icon Redhat

Severity : Moderate

Publid Date: 2014-03-18T00:00:00Z

Links: CVE-2014-1499 - Bugzilla

cve-icon OpenCVE Enrichment

No data.