Lucene search

K
ubuntucveUbuntu.comUB:CVE-2013-1710
HistoryAug 06, 2013 - 12:00 a.m.

CVE-2013-1710

2013-08-0600:00:00
ubuntu.com
ubuntu.com
21

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

0.927 High

EPSS

Percentile

99.0%

The crypto.generateCRMFRequest function in Mozilla Firefox before 23.0,
Firefox ESR 17.x before 17.0.8, Thunderbird before 17.0.8, Thunderbird ESR
17.x before 17.0.8, and SeaMonkey before 2.20 allows remote attackers to
execute arbitrary JavaScript code or conduct cross-site scripting (XSS)
attacks via vectors related to Certificate Request Message Format (CRMF)
request generation.

OSVersionArchitecturePackageVersionFilename
ubuntu12.04noarchfirefox< 23.0+build2-0ubuntu0.12.04.1UNKNOWN
ubuntu12.10noarchfirefox< 23.0+build2-0ubuntu0.12.10.1UNKNOWN
ubuntu13.04noarchfirefox< 23.0+build2-0ubuntu0.13.04.1UNKNOWN
ubuntu12.04noarchthunderbird< 17.0.8+build1-0ubuntu0.12.04.1UNKNOWN
ubuntu12.10noarchthunderbird< 17.0.8+build1-0ubuntu0.12.10.1UNKNOWN
ubuntu13.04noarchthunderbird< 17.0.8+build1-0ubuntu0.13.04.1UNKNOWN

10 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

0.927 High

EPSS

Percentile

99.0%