CVE-2012-0452
published 2012-02-11CVE-2012-0452: Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to cause a denial…
PriorityP434high7.5CVSS 2.0
AVNACLAuNCPIPAP
EPSS
3.08%
86.2th percentile
Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger failure of an nsXBLDocumentInfo::ReadPrototypeBindings function call, related to the cycle collector's access to a hash table containing a stale XBL binding.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | — | — |
| mozilla | seamonkey | — | — |
| mozilla | thunderbird | — | — |
CVSS provenance
nvdv2.07.5HIGHAV:N/AC:L/Au:N/C:P/I:P/A:P
vendor_ubuntu9.3CRITICAL
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Thunderbird vulnerabilities
vendor_ubuntu·2012-02-17·CVSS 9.3
CVE-2012-0452 [CRITICAL] Thunderbird vulnerabilities
Title: Thunderbird vulnerabilities
Summary: Several security issues were fixed in Thunderbird.
Nicolas Gregoire and Aki Helin discovered that when processing a malformed
embedded XSLT stylesheet, Thunderbird can crash due to memory corruption.
If the user were tricked into opening a specially crafted page, an attacker
could exploit this to cause a denial of service via application crash, or
potentially execute code with the privileges of the user invoking
Thunderbird. (CVE-2012-0449)
It was discovered that memory corruption could occur during the decoding of
Ogg Vorbis files. If the user were tricked into opening a specially crafted
file, an attacker could exploit this to cause a denial of service via
application crash, or potentially execute code with the privileges of the
user invokin
Ubuntu
Firefox vulnerability
vendor_ubuntu·2012-02-13·CVSS 7.5
CVE-2012-0452 [HIGH] Firefox vulnerability
Title: Firefox vulnerability
Summary: A security vulnerability has been fixed in Firefox.
Andrew McCreight and Olli Pettay discovered a use-after-free vulnerability
in the XBL bindings. An attacker could exploit this to cause a denial of
service via application crash, or potentially execute code with the
privileges of the user invoking Firefox. (CVE-2012-0452)
Instructions: After a standard system update you need to restart Firefox to make all the
necessary changes.
Red Hat
firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10)
vendor_redhat·2012-02-10·CVSS 7.5
CVE-2012-0452 [HIGH] CWE-416 firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10)
firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10)
Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger failure of an nsXBLDocumentInfo::ReadPrototypeBindings function call, related to the cycle collector's access to a hash table containing a stale XBL binding.
Statement: Not vulnerable. This issue did not affect the versions of firefox as shipped with Red Hat Enterprise Linux 4, 5, or 6.
Package: firefox (Red Hat Enterprise Linux 5) - Not affected
Package: firefox (Red Hat Enterprise Linux 6) - Not affected
GHSA
GHSA-x4p8-2whm-cxpq: Use-after-free vulnerability in Mozilla Firefox 10
ghsa_unreviewed·2022-05-04
CVE-2012-0452 [HIGH] GHSA-x4p8-2whm-cxpq: Use-after-free vulnerability in Mozilla Firefox 10
Use-after-free vulnerability in Mozilla Firefox 10.x before 10.0.1, Thunderbird 10.x before 10.0.1, and SeaMonkey 2.7 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via vectors that trigger failure of an nsXBLDocumentInfo::ReadPrototypeBindings function call, related to the cycle collector's access to a hash table containing a stale XBL binding.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-0452 firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10)
bugzilla·2012-02-10·CVSS 7.5
CVE-2012-0452 [HIGH] CVE-2012-0452 firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10)
CVE-2012-0452 firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10)
A use-after-free flaw was found in in nsXBLDocumentInfo::ReadPrototypeBindings in Firefox 10.0. This flaw does not affect Firefox 9 or earlier.
Reference:
http://www.mozilla.org/security/announce/2012/mfsa2012-10.html
Statement:
Not vulnerable. This issue did not affect the versions of firefox as shipped with Red Hat Enterprise Linux 4, 5, or 6.
Discussion:
Created firefox tracking bugs for this issue
Affects: fedora-all [bug 789508]
Bugzilla
CVE-2012-0452 firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10) [fedora-all]
bugzilla·2012-02-10·CVSS 7.5
CVE-2012-0452 [HIGH] CVE-2012-0452 firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10) [fedora-all]
CVE-2012-0452 firefox: use-after-free in nsXBLDocumentInfo::ReadPrototypeBindings (MFSA 2012-10) [fedora-all]
This is an automatically created tracking bug! It was created to ensure
that one or more security vulnerabilities are fixed in affected Fedora
versions.
For comments that are specific to the vulnerability please use bugs filed
against "Security Response" product referenced in the "Blocks" field.
For more information see:
http://fedoraproject.org/wiki/Security/TrackingBugs
When creating a Bodhi update request, please include this bug ID and the
bug IDs of this bug's parent bugs filed against the "Security Response"
product (the top-level CVE bugs). Please mention the CVE IDs being fixed
in the RPM changelog when available.
Bodhi update submission link:
https://admin.fedoraproje
http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00012.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-02/msg00013.htmlhttp://secunia.com/advisories/48110http://secunia.com/advisories/49055http://www.mandriva.com/security/advisories?name=MDVSA-2012:017http://www.mandriva.com/security/advisories?name=MDVSA-2012:018http://www.mozilla.org/security/announce/2012/mfsa2012-10.htmlhttp://www.securityfocus.com/bid/51975http://www.ubuntu.com/usn/USN-1360-1https://bugzilla.mozilla.org/show_bug.cgi?id=724284https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15017http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00012.htmlhttp://lists.opensuse.org/opensuse-security-announce/2012-02/msg00013.htmlhttp://secunia.com/advisories/48110http://secunia.com/advisories/49055http://www.mandriva.com/security/advisories?name=MDVSA-2012:017http://www.mandriva.com/security/advisories?name=MDVSA-2012:018http://www.mozilla.org/security/announce/2012/mfsa2012-10.htmlhttp://www.securityfocus.com/bid/51975http://www.ubuntu.com/usn/USN-1360-1https://bugzilla.mozilla.org/show_bug.cgi?id=724284https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A15017
2012-02-11
Published