The mozilla::net::FailDelayManager::Lookup function in the WebSockets implementation in Mozilla Firefox before 16.0.1, Thunderbird before 16.0.1, and SeaMonkey before 2.13.1 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
The product writes data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
http://secunia.com/advisories/50904 | third party advisory |
http://secunia.com/advisories/50984 | third party advisory |
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A16719 | vdb entry third party advisory signature |
https://bugzilla.mozilla.org/show_bug.cgi?id=798045 | issue tracking patch vendor advisory |
https://exchange.xforce.ibmcloud.com/vulnerabilities/79209 | vdb entry third party advisory |
http://osvdb.org/86125 | vdb entry broken link |
http://www.ubuntu.com/usn/USN-1608-1 | third party advisory vendor advisory |
http://www.mozilla.org/security/announce/2012/mfsa2012-88.html | vendor advisory |
http://secunia.com/advisories/50929 | third party advisory |
http://www.ubuntu.com/usn/USN-1611-1 | third party advisory vendor advisory |
http://www.securitytracker.com/id?1027653 | vdb entry third party advisory |