Lack of data validation - Type confusion In thunderbird
Description
The nsTableFrame::InsertFrames function in Mozilla Firefox 4.x through 13.0, Firefox ESR 10.x before 10.0.6, Thunderbird 5.0 through 13.0, Thunderbird ESR 10.x before 10.0.6, and SeaMonkey before 2.11 does not properly perform a cast of a frame variable during processing of mixed row-group and column-group frames, which might allow remote attackers to execute arbitrary code via a crafted web site.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Package | Affected version | Patched versions |
|---|---|---|---|
rpm rhel6 | 0:10.0.6-1.el6_3 | ||
rpm rhel5 | 0:10.0.6-2.el5_8 | ||
rpm rhel6 | 0:10.0.6-1.el6_3 | ||
rpm rhel5 | 0:10.0.6-1.el5_8 | ||
rpm rhel5 | 0:10.0.6-1.el5_8 | ||
rpm rhel6 | 0:10.0.6-1.el6_3 |
Aliases
1. 2. 3.