CVE-2013-0787
published 2013-03-11CVE-2013-0787: Use-after-free vulnerability in the nsEditor::IsPreformatted function in editor/libeditor/base/nsEditor.cpp in Mozilla Firefox before 19.0.2, Firefox ESR 17.x…
PriorityP346critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
6.40%
92.9th percentile
Use-after-free vulnerability in the nsEditor::IsPreformatted function in editor/libeditor/base/nsEditor.cpp in Mozilla Firefox before 19.0.2, Firefox ESR 17.x before 17.0.4, Thunderbird before 17.0.4, Thunderbird ESR 17.x before 17.0.4, and SeaMonkey before 2.16.1 allows remote attackers to execute arbitrary code via vectors involving an execCommand call.
Affected
16 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 19.0.1 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | seamonkey | <= 2.16 | — |
| mozilla | seamonkey | — | — |
| mozilla | thunderbird | <= 17.0.3 | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird | — | — |
| mozilla | thunderbird_esr | — | — |
| mozilla | thunderbird_esr | — | — |
| mozilla | thunderbird_esr | — | — |
| mozilla | thunderbird_esr | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Thunderbird vulnerability
vendor_ubuntu·2013-03-13
CVE-2013-0787 Thunderbird vulnerability
Title: Thunderbird vulnerability
Summary: Thunderbird could be made to crash or run programs as your login.
USN-1758-1 fixed vulnerabilities in Firefox. This update provides the
corresponding update for Thunderbird.
Original advisory details:
It was discovered that Firefox contained a memory safety issue. If a user
were tricked into opening a specially crafted page with the HTML editor, a
remote attacker could exploit this to execute arbitrary code with the
privileges of the user invoking the program.
Instructions: After a standard system update you need to restart Thunderbird to make all
the necessary changes.
Ubuntu
Firefox vulnerability
vendor_ubuntu·2013-03-08
CVE-2013-0787 Firefox vulnerability
Title: Firefox vulnerability
Summary: Firefox could be made to crash or run programs as your login if it opened a
malicious website.
It was discovered that Firefox contained a memory safety issue. If a user
were tricked into opening a specially crafted page with the HTML editor, a
remote attacker could exploit this to execute arbitrary code with the
privileges of the user invoking the program.
Instructions: After a standard system update you need to restart Firefox to make all the
necessary changes.
Red Hat
Mozilla: Use-after-free in HTML Editor (MFSA 2013-29)
vendor_redhat·2013-03-08·CVSS 9.3
CVE-2013-0787 [CRITICAL] CWE-416 Mozilla: Use-after-free in HTML Editor (MFSA 2013-29)
Mozilla: Use-after-free in HTML Editor (MFSA 2013-29)
Use-after-free vulnerability in the nsEditor::IsPreformatted function in editor/libeditor/base/nsEditor.cpp in Mozilla Firefox before 19.0.2, Firefox ESR 17.x before 17.0.4, Thunderbird before 17.0.4, Thunderbird ESR 17.x before 17.0.4, and SeaMonkey before 2.16.1 allows remote attackers to execute arbitrary code via vectors involving an execCommand call.
Package: firefox (Red Hat Enterprise Linux 5) - Affected
GHSA
GHSA-hp7j-mmg2-c8g7: Use-after-free vulnerability in the nsEditor::IsPreformatted function in editor/libeditor/base/nsEditor
ghsa_unreviewed·2022-05-17
CVE-2013-0787 [HIGH] GHSA-hp7j-mmg2-c8g7: Use-after-free vulnerability in the nsEditor::IsPreformatted function in editor/libeditor/base/nsEditor
Use-after-free vulnerability in the nsEditor::IsPreformatted function in editor/libeditor/base/nsEditor.cpp in Mozilla Firefox before 19.0.2, Firefox ESR 17.x before 17.0.4, Thunderbird before 17.0.4, Thunderbird ESR 17.x before 17.0.4, and SeaMonkey before 2.16.1 allows remote attackers to execute arbitrary code via vectors involving an execCommand call.
GHSA
GHSA-jrh4-mrj9-6g64: Unspecified vulnerability in Microsoft Windows 7 allows attackers to bypass the ASLR and DEP protection mechanisms via unknown vectors, as demonstrate
ghsa_unreviewed·2022-05-14·CVSS 9.3
CVE-2013-2554 [CRITICAL] GHSA-jrh4-mrj9-6g64: Unspecified vulnerability in Microsoft Windows 7 allows attackers to bypass the ASLR and DEP protection mechanisms via unknown vectors, as demonstrate
Unspecified vulnerability in Microsoft Windows 7 allows attackers to bypass the ASLR and DEP protection mechanisms via unknown vectors, as demonstrated against Firefox by VUPEN during a Pwn2Own competition at CanSecWest 2013, a different vulnerability than CVE-2013-0787.
No detection rules found.
No public exploits indexed.
http://h30499.www3.hp.com/t5/HP-Security-Research-Blog/Pwn2Own-2013/ba-p/5981157http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-03/msg00023.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-03/msg00025.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-03/msg00026.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-03/msg00028.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0614.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0627.htmlhttp://twitter.com/VUPEN/statuses/309505403631325184http://twitter.com/thezdi/statuses/309484730506698752http://www.debian.org/security/2013/dsa-2699http://www.mozilla.org/security/announce/2013/mfsa2013-29.htmlhttp://www.securityfocus.com/bid/58391http://www.ubuntu.com/usn/USN-1758-1https://bugzilla.mozilla.org/show_bug.cgi?id=848644https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16737http://h30499.www3.hp.com/t5/HP-Security-Research-Blog/Pwn2Own-2013/ba-p/5981157http://lists.opensuse.org/opensuse-security-announce/2013-03/msg00010.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-03/msg00023.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-03/msg00025.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-03/msg00026.htmlhttp://lists.opensuse.org/opensuse-security-announce/2013-03/msg00028.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0614.htmlhttp://rhn.redhat.com/errata/RHSA-2013-0627.htmlhttp://twitter.com/VUPEN/statuses/309505403631325184http://twitter.com/thezdi/statuses/309484730506698752http://www.debian.org/security/2013/dsa-2699http://www.mozilla.org/security/announce/2013/mfsa2013-29.htmlhttp://www.securityfocus.com/bid/58391http://www.ubuntu.com/usn/USN-1758-1https://bugzilla.mozilla.org/show_bug.cgi?id=848644https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16737
2013-03-11
Published