CVE-2013-0772
published 2013-02-19CVE-2013-0772: The RasterImage::DrawFrameTo function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attackers to obtain…
PriorityP422medium5.8CVSS 2.0
AVNACMAuNCPINAP
EPSS
1.96%
78.0th percentile
The RasterImage::DrawFrameTo function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read and application crash) via a crafted GIF image.
Affected
18 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| mozilla | firefox | < 19.0 | 19.0 |
| mozilla | seamonkey | < 2.16 | 2.16 |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| opensuse | opensuse | — | — |
| redhat | enterprise_linux_aus | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_desktop | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_eus | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_server | — | — |
| redhat | enterprise_linux_workstation | — | — |
| redhat | enterprise_linux_workstation | — | — |
CVSS provenance
nvdv2.05.8MEDIUMAV:N/AC:M/Au:N/C:P/I:N/A:P
vendor_ubuntu9.3CRITICAL
vendor_redhat5.8MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
mysql: unspecified DoS related to Server Options (CPU July 2013)
vendor_redhat·2013-07-17·CVSS 4.0
CVE-2013-3808 [MEDIUM] mysql: unspecified DoS related to Server Options (CPU July 2013)
mysql: unspecified DoS related to Server Options (CPU July 2013)
Unspecified vulnerability in the MySQL Server component in Oracle MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 allows remote authenticated users to affect availability via unknown vectors related to Server Options.
Statement: This issue was addressed in the package mysql55-mysql as shipped with Red Hat Enterprise Linux 5 via RHEA-2013:1330. This issue was addressed in the package mysql as shipped with Red Hat Enterprise Linux 6 via RHSA-2013:0772.
Package: mysql (Red Hat Enterprise Linux 5) - Under investigation
Ubuntu
Firefox regression
vendor_ubuntu·2013-03-01·CVSS 9.3
[CRITICAL] Firefox regression
Title: Firefox regression
Summary: Due to a regression, Firefox might crash or freeze under normal use.
USN-1729-1 fixed vulnerabilities in Firefox. This update introduced a
regression which sometimes resulted in freezes and crashes when using
multiple tabs with images displayed. This update fixes the problem.
We apologize for the inconvenience.
Original advisory details:
Olli Pettay, Christoph Diehl, Gary Kwong, Jesse Ruderman, Andrew McCreight,
Joe Drew, Wayne Mery, Alon Zakai, Christian Holler, Gary Kwong, Luke
Wagner, Terrence Cole, Timothy Nikkel, Bill McCloskey, and Nicolas Pierron
discovered multiple memory safety issues affecting Firefox. If the user
were tricked into opening a specially crafted page, an attacker could
possibly exploit these to cause a denial of service via ap
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2013-02-20·CVSS 9.3
CVE-2013-0765 [CRITICAL] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Firefox could be made to crash or run programs as your login if it opened a
malicious website.
Olli Pettay, Christoph Diehl, Gary Kwong, Jesse Ruderman, Andrew McCreight,
Joe Drew, Wayne Mery, Alon Zakai, Christian Holler, Gary Kwong, Luke
Wagner, Terrence Cole, Timothy Nikkel, Bill McCloskey, and Nicolas Pierron
discovered multiple memory safety issues affecting Firefox. If the user
were tricked into opening a specially crafted page, an attacker could
possibly exploit these to cause a denial of service via application crash.
(CVE-2013-0783, CVE-2013-0784)
Atte Kettunen discovered that Firefox could perform an out-of-bounds read
while rendering GIF format images. An attacker could exploit this to crash
Firefox. (CVE-2013-0772)
Boris Zbarsky disco
Red Hat
Mozilla: Out-of-bounds read in image rendering (MFSA 2013-22)
vendor_redhat·2013-02-19·CVSS 5.8
CVE-2013-0772 [MEDIUM] CWE-125 Mozilla: Out-of-bounds read in image rendering (MFSA 2013-22)
Mozilla: Out-of-bounds read in image rendering (MFSA 2013-22)
The RasterImage::DrawFrameTo function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read and application crash) via a crafted GIF image.
Statement: This issue has been addressed in firefox 24.2.0-ESR and thunderbird 24.2.0-ESR via RHSA-2013:1812 and RHSA-2013:1823.
GHSA
GHSA-cmfr-58hp-ff9g: The RasterImage::DrawFrameTo function in Mozilla Firefox before 19
ghsa_unreviewed·2022-05-13
CVE-2013-0772 [MEDIUM] CWE-119 GHSA-cmfr-58hp-ff9g: The RasterImage::DrawFrameTo function in Mozilla Firefox before 19
The RasterImage::DrawFrameTo function in Mozilla Firefox before 19.0, Thunderbird before 17.0.3, and SeaMonkey before 2.16 allows remote attackers to obtain sensitive information from process memory or cause a denial of service (out-of-bounds read and application crash) via a crafted GIF image.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2013-2375 mysql: unspecified vulnerability related to Server Privileges (CPU April 2013)
bugzilla·2013-04-16·CVSS 6.5
CVE-2013-2375 [MEDIUM] CVE-2013-2375 mysql: unspecified vulnerability related to Server Privileges (CPU April 2013)
CVE-2013-2375 mysql: unspecified vulnerability related to Server Privileges (CPU April 2013)
An unspecified vulnerability in the Server Privileges subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service as well as impact the confidentiality and integrity of the server via unspecified vectors.
This flaw affects MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-1548 mysql: unspecified DoS related to Server Types (CPU April 2013)
bugzilla·2013-04-16·CVSS 3.5
CVE-2013-1548 [LOW] CVE-2013-1548 mysql: unspecified DoS related to Server Types (CPU April 2013)
CVE-2013-1548 mysql: unspecified DoS related to Server Types (CPU April 2013)
An unspecified vulnerability in the Server Types subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service.
This flaw affects MySQL 5.1.63 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-2378 mysql: unspecified vulnerability related to Information Schema (CPU April 2013)
bugzilla·2013-04-16·CVSS 6.5
CVE-2013-2378 [MEDIUM] CVE-2013-2378 mysql: unspecified vulnerability related to Information Schema (CPU April 2013)
CVE-2013-2378 mysql: unspecified vulnerability related to Information Schema (CPU April 2013)
An unspecified vulnerability in the Information Schema subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service as well as impact the confidentiality and integrity of the server via unspecified vectors.
This flaw affects MySQL 5.1.67 and earlier, 5.5.29 and earlier, and 5.6.10 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
---
Statement:
On Red Hat Enterprise Linux 5.10, new MySQL 5.5 packages are available which are
Bugzilla
CVE-2013-1555 mysql: unspecified DoS related to Server Partition (CPU April 2013)
bugzilla·2013-04-16·CVSS 4.0
CVE-2013-1555 [MEDIUM] CVE-2013-1555 mysql: unspecified DoS related to Server Partition (CPU April 2013)
CVE-2013-1555 mysql: unspecified DoS related to Server Partition (CPU April 2013)
An unspecified vulnerability in the Server Partition subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service.
This flaw affects MySQL 5.1.67 and earlier, and 5.5.29 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-1531 mysql: unspecified vulnerability related to Server Privileges (CPU April 2013)
bugzilla·2013-04-16·CVSS 6.5
CVE-2013-1531 [MEDIUM] CVE-2013-1531 mysql: unspecified vulnerability related to Server Privileges (CPU April 2013)
CVE-2013-1531 mysql: unspecified vulnerability related to Server Privileges (CPU April 2013)
An unspecified vulnerability in the Server Privileges subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service as well as impact the confidentiality and integrity of the server via unspecified vectors.
This flaw affects MySQL 5.1.66 and earlier, and 5.5.28 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
---
Statement:
On Red Hat Enterprise Linux 5.10, new MySQL 5.5 packages are available which are not vulnerable to this
Bugzilla
CVE-2013-2392 mysql: unspecified DoS related to Server Optimizer (CPU April 2013)
bugzilla·2013-04-16·CVSS 4.0
CVE-2013-2392 [MEDIUM] CVE-2013-2392 mysql: unspecified DoS related to Server Optimizer (CPU April 2013)
CVE-2013-2392 mysql: unspecified DoS related to Server Optimizer (CPU April 2013)
An unspecified vulnerability in the Server Optimizer subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service.
This flaw affects MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-1521 mysql: unspecified vulnerability related to Server Locking (CPU April 2013)
bugzilla·2013-04-16·CVSS 6.5
CVE-2013-1521 [MEDIUM] CVE-2013-1521 mysql: unspecified vulnerability related to Server Locking (CPU April 2013)
CVE-2013-1521 mysql: unspecified vulnerability related to Server Locking (CPU April 2013)
An unspecified vulnerability in the Server Locking subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service as well as impact the confidentiality and integrity of the server via unspecified vectors.
This flaw affects MySQL 5.1.67 and earlier, and 5.5.29 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-1552 mysql: unspecified vulnerability related to Server (CPU April 2013)
bugzilla·2013-04-16·CVSS 6.5
CVE-2013-1552 [MEDIUM] CVE-2013-1552 mysql: unspecified vulnerability related to Server (CPU April 2013)
CVE-2013-1552 mysql: unspecified vulnerability related to Server (CPU April 2013)
An unspecified vulnerability in the Server subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service as well as impact the confidentiality and integrity of the server via unspecified vectors.
This flaw affects MySQL 5.1.67 and earlier, and 5.5.29 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-1544 mysql: unspecified DoS related to Data Manipulation Language (CPU April 2013)
bugzilla·2013-04-16·CVSS 4.0
CVE-2013-1544 [MEDIUM] CVE-2013-1544 mysql: unspecified DoS related to Data Manipulation Language (CPU April 2013)
CVE-2013-1544 mysql: unspecified DoS related to Data Manipulation Language (CPU April 2013)
An unspecified vulnerability in the Data Manipulation Language subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service.
This flaw affects MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-1532 mysql: unspecified DoS related to Information Schema (CPU April 2013)
bugzilla·2013-04-16·CVSS 4.0
CVE-2013-1532 [MEDIUM] CVE-2013-1532 mysql: unspecified DoS related to Information Schema (CPU April 2013)
CVE-2013-1532 mysql: unspecified DoS related to Information Schema (CPU April 2013)
An unspecified vulnerability in the Information Schema subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service.
This flaw affects MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-2389 mysql: unspecified DoS related to InnoDB (CPU April 2013)
bugzilla·2013-04-16·CVSS 4.0
CVE-2013-2389 [MEDIUM] CVE-2013-2389 mysql: unspecified DoS related to InnoDB (CPU April 2013)
CVE-2013-2389 mysql: unspecified DoS related to InnoDB (CPU April 2013)
An unspecified vulnerability in the InnoDB subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service.
This flaw affects MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
Bugzilla
CVE-2013-2391 mysql: unspecified vulnerability related to Server Install (CPU April 2013)
bugzilla·2013-04-16·CVSS 3.0
CVE-2013-2391 [LOW] CVE-2013-2391 mysql: unspecified vulnerability related to Server Install (CPU April 2013)
CVE-2013-2391 mysql: unspecified vulnerability related to Server Install (CPU April 2013)
An unspecified vulnerability in the Server Install subcomponent of Oracle MySQL allows local authenticated attackers to impact the confidentiality and integrity of the server via unspecified vectors.
This flaw affects MySQL 5.1.68 and earlier, 5.5.30 and earlier, and 5.6.10 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
---
Statement:
On Red Hat Enterprise Linux 5.10, new MySQL 5.5 packages are available which are not vulnerable to this issue. Future updates f
Bugzilla
CVE-2013-1506 mysql: unspecified DoS related to Server Locking (CPU April 2013)
bugzilla·2013-04-16·CVSS 2.8
CVE-2013-1506 [LOW] CVE-2013-1506 mysql: unspecified DoS related to Server Locking (CPU April 2013)
CVE-2013-1506 mysql: unspecified DoS related to Server Locking (CPU April 2013)
An unspecified vulnerability in the Server Locking subcomponent of Oracle MySQL allows remote authenticated attackers to cause a denial of service.
This flaw affects MySQL 5.1.67 and earlier, 5.5.29 and earlier, and 5.6.10 and earlier.
External References:
http://www.oracle.com/technetwork/topics/security/cpuapr2013-1899555.html#AppendixMSQL
Discussion:
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2013:0772 https://rhn.redhat.com/errata/RHSA-2013-0772.html
---
Statement:
On Red Hat Enterprise Linux 5.10, new MySQL 5.5 packages are available which are not vulnerable to this issue. Future updates for MySQL 5.0 will no longer be made available (mysql-5.0.* and
Bugzilla
CVE-2013-0772 Mozilla: Out-of-bounds read in image rendering (MFSA 2013-22)
bugzilla·2013-02-16·CVSS 5.8
CVE-2013-0772 [MEDIUM] CVE-2013-0772 Mozilla: Out-of-bounds read in image rendering (MFSA 2013-22)
CVE-2013-0772 Mozilla: Out-of-bounds read in image rendering (MFSA 2013-22)
Using the Address Sanitizer tool, security researcher Atte Kettunen from OUSPG found an out-of-bounds read while rendering GIF format images. This could cause a non-exploitable crash and could also attempt to render normally inaccesible data as part of the image.
External Reference:
http://www.mozilla.org/security/announce/2013/mfsa2013-22.html
Acknowledgements:
Red Hat would like to thank the Mozilla project for reporting this issue. Upstream acknowledges Atte Kettunen as the original reporter.
Discussion:
Statement:
This issue has been addressed in firefox 24.2.0-ESR and thunderbird 24.2.0-ESR via RHSA-2013:1812 and RHSA-2013:1823.
http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00017.htmlhttp://lists.opensuse.org/opensuse-updates/2013-02/msg00062.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1812.htmlhttp://www.mozilla.org/security/announce/2013/mfsa2013-22.htmlhttp://www.ubuntu.com/usn/USN-1729-1http://www.ubuntu.com/usn/USN-1729-2https://bugzilla.mozilla.org/show_bug.cgi?id=801366https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17159http://lists.opensuse.org/opensuse-security-announce/2013-02/msg00017.htmlhttp://lists.opensuse.org/opensuse-updates/2013-02/msg00062.htmlhttp://rhn.redhat.com/errata/RHSA-2013-1812.htmlhttp://www.mozilla.org/security/announce/2013/mfsa2013-22.htmlhttp://www.ubuntu.com/usn/USN-1729-1http://www.ubuntu.com/usn/USN-1729-2https://bugzilla.mozilla.org/show_bug.cgi?id=801366https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17159
2013-02-19
Published