Описание
The PreserveWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 does not properly handle the lack of a wrapper, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by leveraging unintended clearing of the wrapper cache's preserved-wrapper flag.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 5 | thunderbird | Affected | ||
Red Hat Enterprise Linux 5 | thunderbird | Fixed | RHSA-2013:0982 | 25.06.2013 |
Red Hat Enterprise Linux 5 | firefox | Fixed | RHSA-2013:0981 | 25.06.2013 |
Red Hat Enterprise Linux 5 | xulrunner | Fixed | RHSA-2013:0981 | 25.06.2013 |
Red Hat Enterprise Linux 6 | firefox | Fixed | RHSA-2013:0981 | 25.06.2013 |
Red Hat Enterprise Linux 6 | xulrunner | Fixed | RHSA-2013:0981 | 25.06.2013 |
Red Hat Enterprise Linux 6 | thunderbird | Fixed | RHSA-2013:0982 | 25.06.2013 |
Показывать по
Дополнительная информация
Статус:
EPSS
5.1 Medium
CVSS2
Связанные уязвимости
The PreserveWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 does not properly handle the lack of a wrapper, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by leveraging unintended clearing of the wrapper cache's preserved-wrapper flag.
The PreserveWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 does not properly handle the lack of a wrapper, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by leveraging unintended clearing of the wrapper cache's preserved-wrapper flag.
The PreserveWrapper implementation in Mozilla Firefox before 22.0, Fir ...
The PreserveWrapper implementation in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 does not properly handle the lack of a wrapper, which allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code by leveraging unintended clearing of the wrapper cache's preserved-wrapper flag.
EPSS
5.1 Medium
CVSS2