CVE-2013-5603 : Detail

CVE-2013-5603

5.27%V4
Network
2013-10-30
09h00 +00:00
2017-09-18
10h57 +00:00
Notifications for a CVE
Stay informed of any changes for a specific CVE.
Notifications manage

CVE Descriptions

Use-after-free vulnerability in the nsContentUtils::ContentIsHostIncludingDescendantOf function in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving HTML document templates.

CVE Informations

Metrics

Metrics Score Severity CVSS Vector Source
V2 10 AV:N/AC:L/Au:N/C:C/I:C/A:C nvd@nist.gov

EPSS

EPSS is a scoring model that predicts the likelihood of a vulnerability being exploited.

EPSS Score

The EPSS model produces a probability score between 0 and 1 (0 and 100%). The higher the score, the greater the probability that a vulnerability will be exploited.

EPSS Percentile

The percentile is used to rank CVE according to their EPSS score. For example, a CVE in the 95th percentile according to its EPSS score is more likely to be exploited than 95% of other CVE. Thus, the percentile is used to compare the EPSS score of a CVE with that of other CVE.

Products Mentioned

Configuraton 0

Mozilla>>Thunderbird >> Version To (including) 24.0.1

Mozilla>>Thunderbird >> Version 17.0

Mozilla>>Thunderbird >> Version 17.0.1

Mozilla>>Thunderbird >> Version 17.0.2

Mozilla>>Thunderbird >> Version 17.0.3

Mozilla>>Thunderbird >> Version 17.0.4

Mozilla>>Thunderbird >> Version 17.0.5

Mozilla>>Thunderbird >> Version 17.0.6

Mozilla>>Thunderbird >> Version 17.0.7

Mozilla>>Thunderbird >> Version 17.0.8

Mozilla>>Thunderbird >> Version 24.0

Mozilla>>Thunderbird_esr >> Version 17.0.9

Configuraton 0

Mozilla>>Firefox >> Version 24.0

Mozilla>>Firefox >> Version 24.0.1

Mozilla>>Firefox >> Version 24.0.2

Configuraton 0

Mozilla>>Seamonkey >> Version To (including) 2.22

Mozilla>>Seamonkey >> Version 2.0

Mozilla>>Seamonkey >> Version 2.0

Mozilla>>Seamonkey >> Version 2.0

Mozilla>>Seamonkey >> Version 2.0

Mozilla>>Seamonkey >> Version 2.0

Mozilla>>Seamonkey >> Version 2.0

Mozilla>>Seamonkey >> Version 2.0

Mozilla>>Seamonkey >> Version 2.0

Mozilla>>Seamonkey >> Version 2.0.1

Mozilla>>Seamonkey >> Version 2.0.2

Mozilla>>Seamonkey >> Version 2.0.3

Mozilla>>Seamonkey >> Version 2.0.4

Mozilla>>Seamonkey >> Version 2.0.5

Mozilla>>Seamonkey >> Version 2.0.6

Mozilla>>Seamonkey >> Version 2.0.7

Mozilla>>Seamonkey >> Version 2.0.8

Mozilla>>Seamonkey >> Version 2.0.9

Mozilla>>Seamonkey >> Version 2.0.10

Mozilla>>Seamonkey >> Version 2.0.11

Mozilla>>Seamonkey >> Version 2.0.12

Mozilla>>Seamonkey >> Version 2.0.13

Mozilla>>Seamonkey >> Version 2.0.14

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.1

Mozilla>>Seamonkey >> Version 2.10

Mozilla>>Seamonkey >> Version 2.10

Mozilla>>Seamonkey >> Version 2.10

Mozilla>>Seamonkey >> Version 2.10

Mozilla>>Seamonkey >> Version 2.10.1

Mozilla>>Seamonkey >> Version 2.11

Mozilla>>Seamonkey >> Version 2.11

Mozilla>>Seamonkey >> Version 2.11

Mozilla>>Seamonkey >> Version 2.11

Mozilla>>Seamonkey >> Version 2.11

Mozilla>>Seamonkey >> Version 2.11

Mozilla>>Seamonkey >> Version 2.11

Mozilla>>Seamonkey >> Version 2.12

Mozilla>>Seamonkey >> Version 2.12

Mozilla>>Seamonkey >> Version 2.12

Mozilla>>Seamonkey >> Version 2.12

Mozilla>>Seamonkey >> Version 2.12

Mozilla>>Seamonkey >> Version 2.12

Mozilla>>Seamonkey >> Version 2.12

Mozilla>>Seamonkey >> Version 2.12.1

Mozilla>>Seamonkey >> Version 2.13

Mozilla>>Seamonkey >> Version 2.13

Mozilla>>Seamonkey >> Version 2.13

Mozilla>>Seamonkey >> Version 2.13

Mozilla>>Seamonkey >> Version 2.13

Mozilla>>Seamonkey >> Version 2.13

Mozilla>>Seamonkey >> Version 2.13

Mozilla>>Seamonkey >> Version 2.13.1

Mozilla>>Seamonkey >> Version 2.13.2

Mozilla>>Seamonkey >> Version 2.14

Mozilla>>Seamonkey >> Version 2.14

Mozilla>>Seamonkey >> Version 2.14

Mozilla>>Seamonkey >> Version 2.14

Mozilla>>Seamonkey >> Version 2.14

Mozilla>>Seamonkey >> Version 2.14

Mozilla>>Seamonkey >> Version 2.15

Mozilla>>Seamonkey >> Version 2.15

Mozilla>>Seamonkey >> Version 2.15

Mozilla>>Seamonkey >> Version 2.15

Mozilla>>Seamonkey >> Version 2.15

Mozilla>>Seamonkey >> Version 2.15

Mozilla>>Seamonkey >> Version 2.15

Mozilla>>Seamonkey >> Version 2.15.1

Mozilla>>Seamonkey >> Version 2.15.2

Mozilla>>Seamonkey >> Version 2.16

Mozilla>>Seamonkey >> Version 2.16

Mozilla>>Seamonkey >> Version 2.16

Mozilla>>Seamonkey >> Version 2.16

Mozilla>>Seamonkey >> Version 2.16

Mozilla>>Seamonkey >> Version 2.16

Mozilla>>Seamonkey >> Version 2.16.1

Mozilla>>Seamonkey >> Version 2.16.2

Mozilla>>Seamonkey >> Version 2.17

Mozilla>>Seamonkey >> Version 2.17

Mozilla>>Seamonkey >> Version 2.17

Mozilla>>Seamonkey >> Version 2.17

Mozilla>>Seamonkey >> Version 2.17

Mozilla>>Seamonkey >> Version 2.17.1

Mozilla>>Seamonkey >> Version 2.18

Mozilla>>Seamonkey >> Version 2.18

Mozilla>>Seamonkey >> Version 2.18

Mozilla>>Seamonkey >> Version 2.18

Mozilla>>Seamonkey >> Version 2.19

Mozilla>>Seamonkey >> Version 2.19

Mozilla>>Seamonkey >> Version 2.19

Mozilla>>Seamonkey >> Version 2.20

Mozilla>>Seamonkey >> Version 2.20

Mozilla>>Seamonkey >> Version 2.20

Mozilla>>Seamonkey >> Version 2.20

Mozilla>>Seamonkey >> Version 2.21

Mozilla>>Seamonkey >> Version 2.21

Mozilla>>Seamonkey >> Version 2.22

Configuraton 0

Mozilla>>Firefox >> Version To (including) 24.0

Mozilla>>Firefox >> Version 19.0

Mozilla>>Firefox >> Version 19.0.1

Mozilla>>Firefox >> Version 19.0.2

Mozilla>>Firefox >> Version 20.0

Mozilla>>Firefox >> Version 20.0.1

Mozilla>>Firefox >> Version 21.0

Mozilla>>Firefox >> Version 22.0

Mozilla>>Firefox >> Version 23.0

Mozilla>>Firefox >> Version 23.0.1

References

https://security.gentoo.org/glsa/201504-01
Tags : vendor-advisory, x_refsource_GENTOO