CVE-2013-1681: Use After Free
Use-after-free vulnerability in the nsContentUtils::RemoveScriptBlocker function in Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via unspecified vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-1681?
The severity of CVE-2013-1681 is critical, as it allows remote attackers to execute arbitrary code or cause a denial of service.
How do I fix CVE-2013-1681?
To fix CVE-2013-1681, upgrade to Mozilla Firefox version 21.0 or later, or Thunderbird version 17.0.6 or later.
Which versions are affected by CVE-2013-1681?
CVE-2013-1681 affects Mozilla Firefox versions prior to 21.0 and Thunderbird versions prior to 17.0.6.
What products are vulnerable to CVE-2013-1681?
Products vulnerable to CVE-2013-1681 include Mozilla Firefox, Mozilla Firefox ESR, Thunderbird, and Thunderbird ESR before their respective patched versions.
Can CVE-2013-1681 lead to data loss?
Yes, CVE-2013-1681 can potentially lead to data loss due to the execution of arbitrary code by attackers.