Files
CVEs-PoC/2013/CVE-2013-1675.md
2024-05-26 14:27:05 +02:00

874 B

CVE-2013-1675

Description

Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.

POC

Reference

No PoCs from references.

Github