The ElementAnimations::EnsureStyleRuleFor function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thunderbird ESR 10.x before 10.0.6, and SeaMonkey before 2.11 allows remote attackers to cause a denial of service (buffer over-read, incorrect pointer dereference, and heap-based buffer overflow) or possibly execute arbitrary code via a crafted web site.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
History
21 Oct 2024, 13:55
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:mozilla:firefox_esr:10.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:10.0.1:*:*:*:*:*:*:* |
cpe:2.3:a:mozilla:firefox:10.0.1:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:10.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:10.0.2:*:*:*:*:*:*:* |
21 Oct 2024, 13:11
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:mozilla:firefox_esr:10.0.4:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:10.0.3:*:*:*:*:*:*:* |
cpe:2.3:a:mozilla:firefox:10.0.3:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:10.0.5:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:10.0.4:*:*:*:*:*:*:* |
Information
Published : 2012-07-18 10:26
Updated : 2024-10-21 13:55
NVD link : CVE-2012-1953
Mitre link : CVE-2012-1953
CVE.ORG link : CVE-2012-1953
JSON object : View
Products Affected
mozilla
- thunderbird_esr
- firefox
- seamonkey
- thunderbird
CWE
CWE-119
Improper Restriction of Operations within the Bounds of a Memory Buffer