CVE-2012-3995: Critical severity firefox vulnerability
The IsCSSWordSpacingSpace function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code or cause a denial of service (out-of-bounds read) via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-3995?
CVE-2012-3995 has a medium severity rating due to its potential for remote code execution and denial of service.
How do I fix CVE-2012-3995?
To fix CVE-2012-3995, update your Mozilla Firefox, Thunderbird, or SeaMonkey to the latest version as recommended by Mozilla.
Which versions of Firefox are affected by CVE-2012-3995?
CVE-2012-3995 affects Firefox versions prior to 16.0 and Firefox ESR versions prior to 10.0.8.
Is Thunderbird vulnerable to CVE-2012-3995?
Yes, Thunderbird versions before 16.0 and Thunderbird ESR before 10.0.8 are vulnerable to CVE-2012-3995.
What exploit methods are associated with CVE-2012-3995?
CVE-2012-3995 can be exploited through methods that lead to an out-of-bounds read, allowing for arbitrary code execution.