PT-2013-3837 · Microsoft+1 · Windows 7+1

Published

2013-03-11

·

Updated

2018-10-30

·

CVE-2013-2554

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Microsoft Windows 7 (affected versions not specified)
Description The issue allows attackers to bypass the Address Space Layout Randomization (ASLR) and Data Execution Prevention (DEP) protection mechanisms. This was demonstrated against Firefox by VUPEN during a Pwn2Own competition at CanSecWest 2013.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2013-2554

Affected Products

Firefox
Windows 7