CVE-2012-1939
05.06.2012, 23:55
jsinfer.cpp in Mozilla Firefox ESR 10.x before 10.0.5 and Thunderbird ESR 10.x before 10.0.5 does not properly determine data types, which allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via crafted JavaScript code.Enginsight
| Vendor | Product | Version |
|---|---|---|
| mozilla | firefox | 10.0 |
| mozilla | firefox | 10.0.1 |
| mozilla | firefox | 10.0.2 |
| mozilla | firefox | 10.0.3 |
| mozilla | firefox | 10.0.4 |
| mozilla | thunderbird_esr | 10.0 |
| mozilla | thunderbird_esr | 10.0.1 |
| mozilla | thunderbird_esr | 10.0.2 |
| mozilla | thunderbird_esr | 10.0.3 |
| mozilla | thunderbird_esr | 10.0.4 |
𝑥
= Vulnerable software versions
Ubuntu Releases
Ubuntu Product | |||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|
| firefox |
| ||||||||||
| seamonkey |
| ||||||||||
| thunderbird |
| ||||||||||
| xulrunner-1.9.2 |
| ||||||||||
| xulrunner-2.0 |
|
Common Weakness Enumeration
References