CVE Vulnerabilities

CVE-2013-1704

Published: Aug 07, 2013 | Modified: Sep 19, 2017
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
9.3 HIGH
AV:N/AC:M/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Use-after-free vulnerability in the nsINode::GetParentNode function in Mozilla Firefox before 23.0 and SeaMonkey before 2.20 allows remote attackers to execute arbitrary code or cause a denial of service (heap memory corruption and application crash) via vectors involving a DOM modification at the time of a SetBody mutation event.

Affected Software

Name Vendor Start Version End Version
Firefox Mozilla 19.0 19.0
Firefox Mozilla 19.0.2 19.0.2
Firefox Mozilla 20.0.1 20.0.1
Firefox Mozilla 19.0.1 19.0.1
Firefox Mozilla 21.0 21.0
Firefox Mozilla * 22.0
Firefox Mozilla 20.0 20.0

References