Use-after-free vulnerability in the nsINode::GetParentNode function in Mozilla Firefox before 23.0 and SeaMonkey before 2.20 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors involving a DOM modification at the time of a SetBody mutation event.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firefox | Mozilla | * | 22.0 (including) |
Firefox | Mozilla | 19.0 (including) | 19.0 (including) |
Firefox | Mozilla | 19.0.1 (including) | 19.0.1 (including) |
Firefox | Mozilla | 19.0.2 (including) | 19.0.2 (including) |
Firefox | Mozilla | 20.0 (including) | 20.0 (including) |
Firefox | Mozilla | 20.0.1 (including) | 20.0.1 (including) |
Firefox | Mozilla | 21.0 (including) | 21.0 (including) |
Firefox | Ubuntu | devel | * |
Firefox | Ubuntu | lucid | * |
Firefox | Ubuntu | precise | * |
Firefox | Ubuntu | quantal | * |
Firefox | Ubuntu | raring | * |
Firefox | Ubuntu | upstream | * |