CVE-2012-4216: Use After Free
Use-after-free vulnerability in the gfxFont::GetFontEntry function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4216?
CVE-2012-4216 is considered a critical vulnerability that can lead to remote code execution or denial of service.
How do I fix CVE-2012-4216?
To fix CVE-2012-4216, update to the latest version of Mozilla Firefox, Thunderbird, SeaMonkey, or the relevant software specified in the vulnerability details.
Which versions are affected by CVE-2012-4216?
CVE-2012-4216 affects Mozilla Firefox versions prior to 17.0, Thunderbird prior to 17.0, and SeaMonkey versions prior to 2.14, among others.
Who is impacted by CVE-2012-4216?
Users on older versions of Mozilla Firefox, Thunderbird, and SeaMonkey, as well as several Linux distributions, are impacted by CVE-2012-4216.
What type of vulnerability is CVE-2012-4216?
CVE-2012-4216 is a use-after-free vulnerability found in the gfxFont::GetFontEntry function.