Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-1674
HistoryMay 14, 2013 - 12:00 a.m.

CVE-2013-1674

2013-05-1400:00:00
ubuntu.com
ubuntu.com
13

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.069

Percentile

94.0%

Use-after-free vulnerability in Mozilla Firefox before 21.0, Firefox ESR
17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x
before 17.0.6 allows remote attackers to execute arbitrary code via vectors
involving an onresize event during the playing of a video.

OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchfirefox< 21.0+build1-0ubuntu0.12.04.3UNKNOWN
ubuntu12.10noarchfirefox< 21.0+build1-0ubuntu0.12.10.2UNKNOWN
ubuntu13.04noarchfirefox< 21.0+build1-0ubuntu0.12.04.2UNKNOWN
ubuntu12.04noarchthunderbird< 17.0.6+build1-0ubuntu0.12.04.1UNKNOWN
ubuntu12.10noarchthunderbird< 17.0.6+build1-0ubuntu0.12.10.1UNKNOWN
ubuntu13.04noarchthunderbird< 17.0.6+build1-0ubuntu0.13.04.1UNKNOWN

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.069

Percentile

94.0%