CVE-2013-5603: Use After Free
Use-after-free vulnerability in the nsContentUtils::ContentIsHostIncludingDescendantOf function in Mozilla Firefox before 25.0, Firefox ESR 24.x before 24.1, Thunderbird before 24.1, and SeaMonkey before 2.22 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via vectors involving HTML document templates.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2013-5603?
CVE-2013-5603 has a high severity rating as it allows remote attackers to execute arbitrary code or cause a denial of service.
How do I fix CVE-2013-5603?
To fix CVE-2013-5603, ensure that you update your Mozilla Firefox, Thunderbird, or SeaMonkey to the latest version available.
Which versions are affected by CVE-2013-5603?
CVE-2013-5603 affects Mozilla Firefox versions before 25.0, Thunderbird versions before 24.1, and SeaMonkey versions before 2.22.
Can CVE-2013-5603 be exploited remotely?
Yes, CVE-2013-5603 can be exploited remotely by attackers through crafted content.
What types of products are affected by CVE-2013-5603?
CVE-2013-5603 affects Mozilla Firefox, Thunderbird, and SeaMonkey email and web applications.