CVE-2012-1953: Buffer Overflow
The ElementAnimations::EnsureStyleRuleFor function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thunderbird ESR 10.x before 10.0.6, and SeaMonkey before 2.11 allows remote attackers to cause a denial of service (buffer over-read, incorrect pointer dereference, and heap-based buffer overflow) or possibly execute arbitrary code via a crafted web site.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1953?
CVE-2012-1953 is classified as a denial of service vulnerability that affects multiple Mozilla products.
How do I fix CVE-2012-1953?
To fix CVE-2012-1953, users should upgrade to the latest version of the affected Mozilla software.
Which software versions are affected by CVE-2012-1953?
CVE-2012-1953 affects Mozilla Firefox versions 4.x through 13.0, Thunderbird 5.0 through 13.0, and SeaMonkey before 2.11.
What type of vulnerability is CVE-2012-1953?
CVE-2012-1953 is a buffer over-read denial of service vulnerability.
Can CVE-2012-1953 be exploited remotely?
Yes, CVE-2012-1953 allows remote attackers to exploit the vulnerability.