CVE-2013-1700
published 2013-06-26CVE-2013-1700: The Mozilla Maintenance Service in Mozilla Firefox before 22.0 on Windows does not properly handle inability to launch the Mozilla Updater executable file…
PriorityP428high7.2CVSS 2.0
AVLACLAuNCCICAC
EPSS
0.37%
29.8th percentile
The Mozilla Maintenance Service in Mozilla Firefox before 22.0 on Windows does not properly handle inability to launch the Mozilla Updater executable file, which allows local users to gain privileges via vectors involving placement of a Trojan horse executable file at an arbitrary location.
Affected
6 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 21.0 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
CVSS provenance
nvdv2.07.2HIGHAV:L/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat7.5HIGH
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-3mcm-22jr-8j53: The Mozilla Maintenance Service in Mozilla Firefox before 22
ghsa_unreviewed·2022-05-17
CVE-2013-1700 [HIGH] GHSA-3mcm-22jr-8j53: The Mozilla Maintenance Service in Mozilla Firefox before 22
The Mozilla Maintenance Service in Mozilla Firefox before 22.0 on Windows does not properly handle inability to launch the Mozilla Updater executable file, which allows local users to gain privileges via vectors involving placement of a Trojan horse executable file at an arbitrary location.
Red Hat
v8: incorrect handling of popular pages
vendor_redhat·2014-01-08·CVSS 7.5
CVE-2013-6650 [HIGH] CWE-480 v8: incorrect handling of popular pages
v8: incorrect handling of popular pages
The StoreBuffer::ExemptPopularPages function in store-buffer.cc in Google V8 before 3.22.24.16, as used in Google Chrome before 32.0.1700.102, allows remote attackers to cause a denial of service (memory corruption) or possibly have unspecified other impact via vectors that trigger incorrect handling of "popular pages."
Package: ruby193-v8 (CloudForms Management Engine 5) - Will not fix
Package: ruby193-v8 (OpenShift Enterprise 1) - Will not fix
Package: v8 (Red Hat OpenShift Enterprise 2) - Will not fix
Package: ruby193-v8 (Red Hat OpenStack Platform 3) - Will not fix
Package: v8 (Red Hat OpenStack Platform 3) - Will not fix
Package: ruby193-v8 (Red Hat OpenStack Platform 4) - Will not fix
Package: v8 (Red Hat OpenStack Platform 4) - Will no
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.mozilla.org/security/announce/2013/mfsa2013-62.htmlhttps://bugzilla.mozilla.org/show_bug.cgi?id=867056https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17126http://www.mozilla.org/security/announce/2013/mfsa2013-62.htmlhttps://bugzilla.mozilla.org/show_bug.cgi?id=867056https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A17126
2013-06-26
Published