CVE-2012-1947: Buffer Overflow
Heap-based buffer overflow in the utf16toisolatin1 function in Mozilla Firefox 4.x through 12.0, Firefox ESR 10.x before 10.0.5, Thunderbird 5.0 through 12.0, Thunderbird ESR 10.x before 10.0.5, and SeaMonkey before 2.10 allows remote attackers to execute arbitrary code via vectors that trigger a character-set conversion failure.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1947?
CVE-2012-1947 has a severity rating of critical due to its potential to allow remote attackers to execute arbitrary code.
How do I fix CVE-2012-1947?
To fix CVE-2012-1947, update your Mozilla Firefox, Thunderbird, or SeaMonkey to the latest patched version.
Which versions are affected by CVE-2012-1947?
CVE-2012-1947 affects Mozilla Firefox versions 4.x through 12.0 and specific versions of Thunderbird and SeaMonkey.
Can CVE-2012-1947 be exploited through a web browser?
Yes, CVE-2012-1947 can be exploited through specially crafted web content delivered to vulnerable versions of web browsers.
What type of vulnerability is CVE-2012-1947?
CVE-2012-1947 is classified as a heap-based buffer overflow vulnerability.