PT-2013-2599 · Mozilla+3 · Firefox+5

Published

2013-02-19

·

Updated

2024-12-12

·

CVE-2013-0772

CVSS v2.0

5.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:N/A:P
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions prior to 19.0 Thunderbird versions prior to 17.0.3 SeaMonkey versions prior to 2.16
Description The issue allows remote attackers to obtain sensitive information from process memory or cause a denial of service via a crafted GIF image. This is due to an out-of-bounds read and application crash in the RasterImage::DrawFrameTo function.
Recommendations For Mozilla Firefox versions prior to 19.0, update to version 19.0 or later. For Thunderbird versions prior to 17.0.3, update to version 17.0.3 or later. For SeaMonkey versions prior to 2.16, update to version 2.16 or later.

Fix

DoS

Buffer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CESA-2013_1812
CESA-2013_1823
CVE-2013-0772
OPENSUSE-SU-2013_0323-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:14572-1
RHSA-2013:1812
RHSA-2013:1823
RHSA-2013_1812
RHSA-2013_1823

Affected Products

Centos
Firefox
Red Hat
Seamonkey
Suse
Thunderbird