CVE-2012-5839: Buffer Overflow
Heap-based buffer overflow in the gfxShapedWord::CompressedGlyph::IsClusterStart function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2012-5839?
CVE-2012-5839 has a critical severity level due to its potential for remote code execution.
How do I fix CVE-2012-5839?
To fix CVE-2012-5839, upgrade to Mozilla Firefox version 17.0 or later, or the latest versions of affected applications like Thunderbird and SeaMonkey.
Which versions of software are affected by CVE-2012-5839?
CVE-2012-5839 affects Firefox versions prior to 17.0, Thunderbird versions prior to 17.0, and SeaMonkey versions prior to 2.14.
Can CVE-2012-5839 be exploited remotely?
Yes, CVE-2012-5839 can be exploited remotely by attackers to execute arbitrary code on a victim's system.
Is there a workaround for CVE-2012-5839 if I cannot upgrade?
There are no known workarounds for CVE-2012-5839, so upgrading is the recommended solution.