LWN.net Logo

mozilla: multiple vulnerabilities

Package(s):firefox thunderbird seamonkey CVE #(s):CVE-2013-1718 CVE-2013-1722 CVE-2013-1725 CVE-2013-1730 CVE-2013-1732 CVE-2013-1735 CVE-2013-1736 CVE-2013-1737
Created:September 18, 2013 Updated:September 30, 2013
Description: From the CVE entries:

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors. (CVE-2013-1718)

Use-after-free vulnerability in the nsAnimationManager::BuildAnimations function in the Animation Manager in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving stylesheet cloning. (CVE-2013-1722)

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not ensure that initialization occurs for JavaScript objects with compartments, which allows remote attackers to execute arbitrary code by leveraging incorrect scope handling. (CVE-2013-1725)

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not properly handle movement of XBL-backed nodes between documents, which allows remote attackers to execute arbitrary code or cause a denial of service (JavaScript compartment mismatch, or assertion failure and application exit) via a crafted web site. (CVE-2013-1730)

Buffer overflow in the nsFloatManager::GetFlowArea function in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code via crafted use of lists and floats within a multi-column layout. (CVE-2013-1732)

Use-after-free vulnerability in the mozilla::layout::ScrollbarActivity function in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code via vectors related to image-document scrolling. (CVE-2013-1735)

The nsGfxScrollFrameInner::IsLTR function in Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption) via vectors related to improperly establishing parent-child relationships of range-request nodes. (CVE-2013-1736)

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not properly identify the "this" object during use of user-defined getter methods on DOM proxies, which might allow remote attackers to bypass intended access restrictions via vectors involving an expando object. (CVE-2013-1737)

Alerts:
Red Hat RHSA-2013:1268-01 2013-09-17
Red Hat RHSA-2013:1269-01 2013-09-17
CentOS CESA-2013:1268 2013-09-17
CentOS CESA-2013:1268 2013-09-18
CentOS CESA-2013:1269 2013-09-17
CentOS CESA-2013:1269 2013-09-18
Debian DSA-2759-1 2013-09-18
Mandriva MDVSA-2013:237 2013-09-18
Oracle ELSA-2013-1268 2013-09-17
Oracle ELSA-2013-1269 2013-09-17
Scientific Linux SLSA-2013:1268-1 2013-09-17
Scientific Linux SLSA-2013:1269-1 2013-09-17
Slackware SSA:2013-260-02 2013-09-17
Slackware SSA:2013-260-03 2013-09-17
Ubuntu USN-1951-1 2013-09-17
Mageia MGASA-2013-0287 2013-09-19
Oracle ELSA-2013-1268 2013-09-18
Ubuntu USN-1952-1 2013-09-18
Fedora FEDORA-2013-16992 2013-09-20
Fedora FEDORA-2013-16992 2013-09-20
Debian DSA-2762-1 2013-09-23
openSUSE openSUSE-SU-2013:1493-1 2013-09-27
openSUSE openSUSE-SU-2013:1491-1 2013-09-27
openSUSE openSUSE-SU-2013:1495-1 2013-09-27
openSUSE openSUSE-SU-2013:1496-1 2013-09-27
Fedora FEDORA-2013-17047 2013-09-29
Fedora FEDORA-2013-17373 2013-09-30
Fedora FEDORA-2013-17047 2013-09-29
Gentoo 201309-23 2013-09-27
openSUSE openSUSE-SU-2013:1499-1 2013-09-29
Slackware SSA:2013-271-01 2013-09-28
SUSE SUSE-SU-2013:1497-1 2013-09-27

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds