Уязвимость выполнения произвольного кода в продуктах Mozilla через use-after-free в реализации IME State Manager
Описание
В реализации IME State Manager в продуктах Mozilla обнаружена уязвимость use-after-free, связанная с функцией nsIContent::GetNameSpaceID
. Эта уязвимость позволяет злоумышленникам удаленно выполнять произвольный код с помощью неуточненных способов воздействия.
Затронутые версии ПО
- Mozilla Firefox версии до 16.0
- Mozilla Firefox ESR 10.x версии до 10.0.8
- Mozilla Thunderbird версии до 16.0
- Mozilla Thunderbird ESR 10.x версии до 10.0.8
- Mozilla SeaMonkey версии до 2.13
Тип уязвимости
Удаленное выполнение кода
Ссылки
- Mailing ListThird Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Third Party Advisory
- Vendor Advisory
- Third Party Advisory
- Issue TrackingVendor Advisory
- Third Party AdvisoryVDB Entry
- Third Party Advisory
- Mailing ListThird Party Advisory
Уязвимые конфигурации
Одно из
Одно из
EPSS
9.3 Critical
CVSS2
Дефекты
Связанные уязвимости
Use-after-free vulnerability in the IME State Manager implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code via unspecified vectors, related to the nsIContent::GetNameSpaceID function.
Use-after-free vulnerability in the IME State Manager implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code via unspecified vectors, related to the nsIContent::GetNameSpaceID function.
Use-after-free vulnerability in the IME State Manager implementation i ...
Use-after-free vulnerability in the IME State Manager implementation in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code via unspecified vectors, related to the nsIContent::GetNameSpaceID function.
EPSS
9.3 Critical
CVSS2