CVE-2012-1962: Use After Free
Use-after-free vulnerability in the JSDependentString::undepend function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thunderbird ESR 10.x before 10.0.6, and SeaMonkey before 2.11 allows remote attackers to cause a denial of service (memory corruption) or possibly execute arbitrary code via vectors involving strings with multiple dependencies.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-1962?
CVE-2012-1962 has a severity rating of moderate, as it can lead to denial of service due to a use-after-free vulnerability.
How do I fix CVE-2012-1962?
To fix CVE-2012-1962, you should update Mozilla Firefox, Thunderbird, or SeaMonkey to the latest version that is not affected by this vulnerability.
Which software versions are affected by CVE-2012-1962?
CVE-2012-1962 affects Mozilla Firefox versions 4.x through 13.0, Thunderbird versions 5.0 through 13.0, and SeaMonkey versions before 2.11.
What types of attacks does CVE-2012-1962 allow?
CVE-2012-1962 allows remote attackers to exploit the vulnerability to cause a denial of service and potentially crash the application.
Is CVE-2012-1962 related to memory corruption?
Yes, CVE-2012-1962 is a use-after-free vulnerability that leads to memory corruption issues.