CVE Vulnerabilities

CVE-2013-5607

Published: Nov 20, 2013 | Modified: Nov 25, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
4.3 MODERATE
AV:N/AC:M/Au:N/C:N/I:N/A:P
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Integer overflow in the PL_ArenaAllocate function in Mozilla Netscape Portable Runtime (NSPR) before 4.10.2, as used in Firefox before 25.0.1, Firefox ESR 17.x before 17.0.11 and 24.x before 24.1.1, and SeaMonkey before 2.22.1, allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact via a crafted X.509 certificate, a related issue to CVE-2013-1741.

Affected Software

NameVendorStart VersionEnd Version
Netscape_portable_runtimeMozilla*4.10.1 (including)
Netscape_portable_runtimeMozilla4.1.1 (including)4.1.1 (including)
Netscape_portable_runtimeMozilla4.1.2 (including)4.1.2 (including)
Netscape_portable_runtimeMozilla4.2 (including)4.2 (including)
Netscape_portable_runtimeMozilla4.2.2 (including)4.2.2 (including)
Netscape_portable_runtimeMozilla4.3 (including)4.3 (including)
Netscape_portable_runtimeMozilla4.4.1 (including)4.4.1 (including)
Netscape_portable_runtimeMozilla4.5.1 (including)4.5.1 (including)
Netscape_portable_runtimeMozilla4.6 (including)4.6 (including)
Netscape_portable_runtimeMozilla4.6.1 (including)4.6.1 (including)
Netscape_portable_runtimeMozilla4.6.2 (including)4.6.2 (including)
Netscape_portable_runtimeMozilla4.6.3 (including)4.6.3 (including)
Netscape_portable_runtimeMozilla4.6.4 (including)4.6.4 (including)
Netscape_portable_runtimeMozilla4.6.5 (including)4.6.5 (including)
Netscape_portable_runtimeMozilla4.6.6 (including)4.6.6 (including)
Netscape_portable_runtimeMozilla4.6.7 (including)4.6.7 (including)
Netscape_portable_runtimeMozilla4.6.8 (including)4.6.8 (including)
Netscape_portable_runtimeMozilla4.7 (including)4.7 (including)
Netscape_portable_runtimeMozilla4.7.1 (including)4.7.1 (including)
Netscape_portable_runtimeMozilla4.7.2 (including)4.7.2 (including)
Netscape_portable_runtimeMozilla4.7.3 (including)4.7.3 (including)
Netscape_portable_runtimeMozilla4.7.4 (including)4.7.4 (including)
Netscape_portable_runtimeMozilla4.7.5 (including)4.7.5 (including)
Netscape_portable_runtimeMozilla4.7.6 (including)4.7.6 (including)
Netscape_portable_runtimeMozilla4.8 (including)4.8 (including)
Netscape_portable_runtimeMozilla4.8.2 (including)4.8.2 (including)
Netscape_portable_runtimeMozilla4.8.3 (including)4.8.3 (including)
Netscape_portable_runtimeMozilla4.8.4 (including)4.8.4 (including)
Netscape_portable_runtimeMozilla4.8.5 (including)4.8.5 (including)
Netscape_portable_runtimeMozilla4.8.6 (including)4.8.6 (including)
Netscape_portable_runtimeMozilla4.8.7 (including)4.8.7 (including)
Netscape_portable_runtimeMozilla4.8.8 (including)4.8.8 (including)
Netscape_portable_runtimeMozilla4.8.9 (including)4.8.9 (including)
Netscape_portable_runtimeMozilla4.9 (including)4.9 (including)
Netscape_portable_runtimeMozilla4.9.1 (including)4.9.1 (including)
Netscape_portable_runtimeMozilla4.9.2 (including)4.9.2 (including)
Netscape_portable_runtimeMozilla4.9.3 (including)4.9.3 (including)
Netscape_portable_runtimeMozilla4.9.4 (including)4.9.4 (including)
Netscape_portable_runtimeMozilla4.9.5 (including)4.9.5 (including)
Netscape_portable_runtimeMozilla4.9.6 (including)4.9.6 (including)
Netscape_portable_runtimeMozilla4.10 (including)4.10 (including)
Red Hat Enterprise Linux 5RedHatnspr-0:4.10.2-2.el5_10*
Red Hat Enterprise Linux 5RedHatnss-0:3.15.3-3.el5_10*
Red Hat Enterprise Linux 6RedHatnspr-0:4.10.2-1.el6_5*
Red Hat Enterprise Linux 6RedHatnss-0:3.15.3-2.el6_5*
Red Hat Enterprise Linux 6RedHatnss-util-0:3.15.3-1.el6_5*
FirefoxUbuntulucid*
FirefoxUbuntuprecise*
FirefoxUbuntuquantal*
FirefoxUbunturaring*
FirefoxUbuntusaucy*
FirefoxUbuntuupstream*
NsprUbuntulucid*
NsprUbuntuprecise*
NsprUbuntuquantal*
NsprUbunturaring*
NsprUbuntusaucy*
NsprUbuntuupstream*
ThunderbirdUbuntudevel*
ThunderbirdUbuntulucid*
ThunderbirdUbuntuprecise*
ThunderbirdUbuntuquantal*
ThunderbirdUbunturaring*
ThunderbirdUbuntusaucy*
ThunderbirdUbuntuupstream*

References