CVE-2013-1675mediumunder attackCWE-665

CVE-2013-1675

Published · Updated

43Vexday Risk Score

Prioritize patching. It under exploitation confirmed by CISA.

ssvc Attendcvss 6.5epss 6.7%
from disclosure to weapon
Published on NVDMay 16
CISA KEV+3213d
exploitation probability
6.7%top 6% of all CVEs
observed exploitation
yesCISA + VulnCheck
What the vendors declare (VEX)

Official vendor statements in CSAF/VEX format: whether their product is affected, already fixed, or ruled out — and why. These are the vendor's assertions, not Vexday's judgment.

Affected
1 product
Red Hat Enterprise Linux 5
none_available: Affected
Fixed
9 products (140 components)
Red Hat Enterprise Linux (v. 5 server) · Red Hat Enterprise Linux Server (v. 6) · Red Hat Enterprise Linux Server Optional (v. 6) · Red Hat Enterprise Linux Desktop (v. 6) · Red Hat Enterprise Linux Workstation (v. 6) · and others 4
Action required by CISAfederal deadline: 2022-03-24

Apply updates per vendor instructions.

In short

Mozilla Firefox and Thunderbird versions before 21.0 don't properly initialize certain memory structures when handling SVG zoom events, allowing attackers to read sensitive data from the browser's memory through a malicious website.

Technical detail

Uninitialized data structures in nsDOMSVGZoomEvent's mPreviousScale and mNewScale functions permit information disclosure via memory leakage. An attacker can craft a malicious SVG-containing webpage to trigger zoom events and access uninitialized heap memory containing sensitive data. This requires user interaction (visiting a crafted site) and affects Firefox <21.0 and Thunderbird <17.0.6.

Summary generated and translated by AI from the official description.

The full analysis of this CVE is available in Portuguese →

Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:N/A:N
Affected products
n/a · n/a