PT-2013-2599 · Mozilla+3 · Firefox+5

Publicado

2013-02-19

·

Atualizado

2024-12-12

·

CVE-2013-0772

CVSS v2.0

5.8

Média

VetorAV:N/AC:M/Au:N/C:P/I:N/A:P
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 19.0 Thunderbird versions prior to 17.0.3 SeaMonkey versions prior to 2.16
Description The issue allows remote attackers to obtain sensitive information from process memory or cause a denial of service via a crafted GIF image. This is due to an out-of-bounds read and application crash in the RasterImage::DrawFrameTo function.
Recommendations For Mozilla Firefox versions prior to 19.0, update to version 19.0 or later. For Thunderbird versions prior to 17.0.3, update to version 17.0.3 or later. For SeaMonkey versions prior to 2.16, update to version 2.16 or later.

Correção

DoS

Buffer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CESA-2013_1812
CESA-2013_1823
CVE-2013-0772
OPENSUSE-SU-2013_0323-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:14572-1
RHSA-2013:1812
RHSA-2013:1823
RHSA-2013_1812
RHSA-2013_1823

Produtos afetados

Centos
Firefox
Red Hat
Seamonkey
Suse
Thunderbird