CVE-2013-5613

CVSS v3.1 9.8 (Critical)
98% Progress
CVSS v2.0 10 (High)
100% Progress
EPSS 0.79 % (82th)
0.79% Progress
Affected Products 17
Advisories 8

Use-after-free vulnerability in the PresShell::DispatchSynthMouseMove function in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving synthetic mouse movement, related to the RestyleManager::GetHoverGeneration function.

Weaknesses
CWE-416
Use After Free
CVE Status
PUBLISHED
CNA
Mozilla Corporation
Published Date
2013-12-11 15:55:12
(10 years ago)
Updated Date
2020-08-12 14:45:48
(4 years ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox prior 26.0 version cpe:2.3:a:mozilla:firefox < 26.0
  Mozilla Firefox Esr from 24.0 version and prior 24.2 version cpe:2.3:a:mozilla:firefox_esr >= 24.0 < 24.2
  Mozilla Seamonkey prior 2.23 version cpe:2.3:a:mozilla:seamonkey < 2.23
  Mozilla Thunderbird prior 24.2 version cpe:2.3:a:mozilla:thunderbird < 24.2

Configuration #2

    CPE23 From Up To
  Fedoraproject Fedora 18 cpe:2.3:o:fedoraproject:fedora:18
  Fedoraproject Fedora 19 cpe:2.3:o:fedoraproject:fedora:19
  Fedoraproject Fedora 20 cpe:2.3:o:fedoraproject:fedora:20

Configuration #3

    CPE23 From Up To
  Suse Linux Enterprise Software Development Kit 11.0 SP3 cpe:2.3:a:suse:suse_linux_enterprise_software_development_kit:11.0:sp3
  Opensuse 12.2 cpe:2.3:o:opensuse:opensuse:12.2
  Opensuse 12.3 cpe:2.3:o:opensuse:opensuse:12.3
  Opensuse 13.1 cpe:2.3:o:opensuse:opensuse:13.1
  Suse Linux Enterprise Desktop 11 SP3 cpe:2.3:o:suse:suse_linux_enterprise_desktop:11:sp3
  Suse Linux Enterprise Server 11 SP3 For cpe:2.3:o:suse:suse_linux_enterprise_server:11:sp3:*:*:*:-
  Suse Linux Enterprise Server 11 SP3 for Vmware cpe:2.3:o:suse:suse_linux_enterprise_server:11:sp3:*:*:*:vmware

Configuration #4

    CPE23 From Up To
  Redhat Enterprise Linux Desktop 5.0 cpe:2.3:o:redhat:enterprise_linux_desktop:5.0
  Redhat Enterprise Linux Desktop 6.0 cpe:2.3:o:redhat:enterprise_linux_desktop:6.0
  Redhat Enterprise Linux Eus 6.5 cpe:2.3:o:redhat:enterprise_linux_eus:6.5
  Redhat Enterprise Linux Server 5.0 cpe:2.3:o:redhat:enterprise_linux_server:5.0
  Redhat Enterprise Linux Server 6.0 cpe:2.3:o:redhat:enterprise_linux_server:6.0
  Redhat Enterprise Linux Server Aus 6.5 cpe:2.3:o:redhat:enterprise_linux_server_aus:6.5
  Redhat Enterprise Linux Server Eus 6.5 cpe:2.3:o:redhat:enterprise_linux_server_eus:6.5
  Redhat Enterprise Linux Server Tus 6.5 cpe:2.3:o:redhat:enterprise_linux_server_tus:6.5
  Redhat Enterprise Linux Workstation 5.0 cpe:2.3:o:redhat:enterprise_linux_workstation:5.0
  Redhat Enterprise Linux Workstation 6.0 cpe:2.3:o:redhat:enterprise_linux_workstation:6.0

Configuration #5

    CPE23 From Up To
  Canonical Ubuntu Linux 12.04 cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm
  Canonical Ubuntu Linux 12.10 cpe:2.3:o:canonical:ubuntu_linux:12.10
  Canonical Ubuntu Linux 13.04 cpe:2.3:o:canonical:ubuntu_linux:13.04
  Canonical Ubuntu Linux 13.10 cpe:2.3:o:canonical:ubuntu_linux:13.10
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...