Entreprise d'experts en Sécurité Informatique : Audits et conseils en cybersécurité
Entreprise française de cybersécurité depuis 2004
☎ 03 60 47 09 81 - info@securiteinfo.com


CVE-2014-8643

Description

Mozilla Firefox before 35.0 on Windows allows remote attackers to bypass the Gecko Media Plugin (GMP) sandbox protection mechanism by leveraging access to the GMP process, as demonstrated by the OpenH264 plugin's process.

POC

Reference

- http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html

- https://bugzilla.mozilla.org/show_bug.cgi?id=1117140

Github

No PoCs found on GitHub currently.