CVE-2012-4218: Use After Free
Use-after-free vulnerability in the BuildTextRunsScanner::BreakSink::SetBreaks function in Mozilla Firefox before 17.0, Thunderbird before 17.0, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2012-4218?
CVE-2012-4218 is classified as a critical vulnerability that allows remote attackers to execute arbitrary code.
How do I fix CVE-2012-4218?
To fix CVE-2012-4218, upgrade to Mozilla Firefox version 17.0 or later, Thunderbird version 17.0 or later, or SeaMonkey version 2.14 or later.
Which versions are affected by CVE-2012-4218?
CVE-2012-4218 affects Mozilla Firefox versions before 17.0, Thunderbird versions before 17.0, and SeaMonkey versions before 2.14, along with specific versions of Ubuntu and openSUSE.
What types of attacks can CVE-2012-4218 facilitate?
CVE-2012-4218 can facilitate remote code execution or cause a denial of service through heap memory corruption.
Is there a workaround for CVE-2012-4218?
There are no known workarounds for CVE-2012-4218, and updating the software is the recommended action.