se-after-free vulnerability in the nsDocument::AdoptNode function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thunderbird ESR 10.x before 10.0.6, and SeaMonkey before 2.11 allows remote attackers to cause a denial of service (heap memory corruption) or possibly execute arbitrary code via vectors involving multiple adoptions and empty documents.
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
Configuration 5 (hide)
|
21 Nov 2024, 01:38
| Type | Values Removed | Values Added |
|---|---|---|
| References | () http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00011.html - | |
| References | () http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00012.html - | |
| References | () http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00013.html - | |
| References | () http://lists.opensuse.org/opensuse-security-announce/2012-07/msg00016.html - | |
| References | () http://osvdb.org/83995 - | |
| References | () http://rhn.redhat.com/errata/RHSA-2012-1088.html - | |
| References | () http://secunia.com/advisories/49963 - | |
| References | () http://secunia.com/advisories/49964 - | |
| References | () http://secunia.com/advisories/49965 - | |
| References | () http://secunia.com/advisories/49968 - | |
| References | () http://secunia.com/advisories/49972 - | |
| References | () http://secunia.com/advisories/49977 - | |
| References | () http://secunia.com/advisories/49979 - | |
| References | () http://secunia.com/advisories/49992 - | |
| References | () http://secunia.com/advisories/49993 - | |
| References | () http://secunia.com/advisories/49994 - | |
| References | () http://www.debian.org/security/2012/dsa-2514 - | |
| References | () http://www.debian.org/security/2012/dsa-2528 - | |
| References | () http://www.mozilla.org/security/announce/2012/mfsa2012-44.html - Vendor Advisory | |
| References | () http://www.securityfocus.com/bid/54578 - | |
| References | () http://www.securitytracker.com/id?1027256 - | |
| References | () http://www.securitytracker.com/id?1027257 - | |
| References | () http://www.securitytracker.com/id?1027258 - | |
| References | () http://www.ubuntu.com/usn/USN-1509-1 - | |
| References | () http://www.ubuntu.com/usn/USN-1509-2 - | |
| References | () http://www.ubuntu.com/usn/USN-1510-1 - | |
| References | () https://bugzilla.mozilla.org/show_bug.cgi?id=765139 - | |
| References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16984 - |
21 Oct 2024, 13:55
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:mozilla:firefox_esr:10.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:10.0.2:*:*:*:*:*:*:* |
cpe:2.3:a:mozilla:firefox:10.0:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:10.0.2:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:10.0.1:*:*:*:*:*:*:* |
21 Oct 2024, 13:11
| Type | Values Removed | Values Added |
|---|---|---|
| CPE | cpe:2.3:a:mozilla:firefox_esr:10.0.4:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox_esr:10.0.3:*:*:*:*:*:*:* |
cpe:2.3:a:mozilla:firefox:10.0.3:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:10.0.5:*:*:*:*:*:*:* cpe:2.3:a:mozilla:firefox:10.0.4:*:*:*:*:*:*:* |
Published : 2012-07-18 10:26
Updated : 2025-04-11 00:51
NVD link : CVE-2012-1954
Mitre link : CVE-2012-1954
CVE.ORG link : CVE-2012-1954
JSON object : View
Resource Management Errors