CVE-2012-1941: Buffer Overflow
Heap-based buffer overflow in the nsHTMLReflowState::CalculateHypotheticalBox function in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 allows remote attackers to execute arbitrary code by resizing a window displaying absolutely positioned and relatively positioned elements in nested columns.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1941?
CVE-2012-1941 is classified as a high severity vulnerability due to its potential to allow remote code execution.
How do I fix CVE-2012-1941?
To fix CVE-2012-1941, update affected Mozilla Firefox, Thunderbird, or SeaMonkey to the latest version that addresses this vulnerability.
What software is affected by CVE-2012-1941?
CVE-2012-1941 affects Mozilla Firefox versions 4.x to 12.0, Thunderbird versions 5.0 to 12.0, and SeaMonkey versions before 2.10.
Can CVE-2012-1941 be exploited remotely?
Yes, CVE-2012-1941 can be exploited remotely, allowing attackers to execute arbitrary code on affected systems.
Is there a patch available for CVE-2012-1941?
Yes, patches are available in the latest software releases for Mozilla Firefox, Thunderbird, and SeaMonkey.