CVE-2013-5610

high
New! CVE Severity Now Using CVSS v3

The calculated severity for CVEs has been updated to use CVSS v3 by default. CVEs that do not have a CVSS v3 score will fall back CVSS v2 for calculating severity. Severity display preferences can be toggled in the settings dropdown.

Description

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

References

http://lists.fedoraproject.org/pipermail/package-announce/2013-December/123437.html

http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124108.html

http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124257.html

http://lists.fedoraproject.org/pipermail/package-announce/2014-January/125470.html

http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00010.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00085.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00086.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00087.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00119.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00120.html

http://lists.opensuse.org/opensuse-updates/2013-12/msg00121.html

http://lists.opensuse.org/opensuse-updates/2014-01/msg00002.html

http://www.mozilla.org/security/announce/2013/mfsa2013-104.html

http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html

http://www.securitytracker.com/id/1029470

http://www.securitytracker.com/id/1029476

http://www.ubuntu.com/usn/USN-2052-1

https://bugzilla.mozilla.org/show_bug.cgi?id=890432

https://bugzilla.mozilla.org/show_bug.cgi?id=905903

https://security.gentoo.org/glsa/201504-01

Details

Source: MITRE

Published: 2013-12-11

Updated: 2020-08-21

Type: CWE-787

Risk Information

CVSS v2

Base Score: 10

Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Impact Score: 10

Exploitability Score: 10

Severity: HIGH

Tenable Plugins

View all (27 total)

IDNameProductFamilySeverity
701241Mozilla Firefox ESR < 24.2 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
critical
82632GLSA-201504-01 : Mozilla Products: Multiple vulnerabilitiesNessusGentoo Local Security Checks
critical
75327openSUSE Security Update : seamonkey (openSUSE-SU-2014:0008-1)NessusSuSE Local Security Checks
critical
75241openSUSE Security Update : MozillaFirefox (openSUSE-SU-2013:1918-1)NessusSuSE Local Security Checks
critical
75240openSUSE Security Update : MozillaFirefox (openSUSE-SU-2013:1917-1)NessusSuSE Local Security Checks
critical
75239openSUSE Security Update : MozillaFirefox (openSUSE-SU-2013:1916-1)NessusSuSE Local Security Checks
critical
74868openSUSE Security Update : MozillaThunderbird (openSUSE-SU-2013:1957-1)NessusSuSE Local Security Checks
critical
74867openSUSE Security Update : MozillaThunderbird (openSUSE-SU-2013:1959-1)NessusSuSE Local Security Checks
critical
74866openSUSE Security Update : MozillaThunderbird (openSUSE-SU-2013:1958-1)NessusSuSE Local Security Checks
critical
71785Fedora 18 : thunderbird-24.2.0-2.fc18 (2013-23291)NessusFedora Local Security Checks
critical
71560SuSE 11.3 Security Update : Mozilla Firefox (SAT Patch Number 8657)NessusSuSE Local Security Checks
critical
71559SuSE 11.3 Security Update : Mozilla Firefox (SAT Patch Number 8657)NessusSuSE Local Security Checks
critical
71505Fedora 20 : firefox-26.0-3.fc20 / thunderbird-24.2.0-3.fc20 / xulrunner-26.0-2.fc20 (2013-23519)NessusFedora Local Security Checks
critical
8072SeaMonkey < 2.23 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
critical
8071Mozilla Thunderbird < 24.2 Multiple VulnerabilitiesNessus Network MonitorSMTP Clients
critical
8070Mozilla Firefox < 26.0 Multiple VulnerabilitiesNessus Network MonitorWeb Clients
critical
71452FreeBSD : mozilla -- multiple vulnerabilities (dd116b19-64b3-11e3-868f-0025905a4771)NessusFreeBSD Local Security Checks
critical
71448Fedora 19 : thunderbird-24.2.0-2.fc19 (2013-23295)NessusFedora Local Security Checks
critical
71374Ubuntu 12.04 LTS / 12.10 / 13.04 / 13.10 : firefox vulnerabilities (USN-2052-1)NessusUbuntu Local Security Checks
critical
71365Fedora 19 : firefox-26.0-2.fc19 / xulrunner-26.0-1.fc19 (2013-23127)NessusFedora Local Security Checks
critical
71349SeaMonkey < 2.23 Multiple VulnerabilitiesNessusWindows
critical
71348Mozilla Thunderbird < 24.2 Multiple VulnerabilitiesNessusWindows
critical
71347Firefox < 26.0 Multiple VulnerabilitiesNessusWindows
critical
71346Firefox ESR 24.x < 24.2 Multiple VulnerabilitiesNessusWindows
critical
71345Thunderbird < 24.2 Multiple Vulnerabilities (Mac OS X)NessusMacOS X Local Security Checks
critical
71344Firefox < 26.0 Multiple Vulnerabilities (Mac OS X)NessusMacOS X Local Security Checks
critical
71343Firefox ESR 24.x < 24.2 Multiple Vulnerabilities (Mac OS X)NessusMacOS X Local Security Checks
critical