Use-after-free vulnerability in the nsINode::GetParentNode function in Mozilla Firefox before 23.0 and SeaMonkey before 2.20 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors involving a DOM modification at the time of a SetBody mutation event.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Firefox | Mozilla | 19.0 | 19.0 |
Firefox | Mozilla | 19.0.2 | 19.0.2 |
Firefox | Mozilla | 20.0.1 | 20.0.1 |
Firefox | Mozilla | 19.0.1 | 19.0.1 |
Firefox | Mozilla | 21.0 | 21.0 |
Firefox | Mozilla | * | 22.0 |
Firefox | Mozilla | 20.0 | 20.0 |