Use-after-free vulnerability in the nsIDocument::GetRootElement function in Mozilla Firefox before 22.0, Firefox ESR 17.x before 17.0.7, Thunderbird before 17.0.7, and Thunderbird ESR 17.x before 17.0.7 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption) via a crafted web site.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firefox | Mozilla | * | 21.0 (including) |
Firefox | Mozilla | 19.0 (including) | 19.0 (including) |
Firefox | Mozilla | 19.0.1 (including) | 19.0.1 (including) |
Firefox | Mozilla | 19.0.2 (including) | 19.0.2 (including) |
Firefox | Mozilla | 20.0 (including) | 20.0 (including) |
Firefox | Mozilla | 20.0.1 (including) | 20.0.1 (including) |