{"cves":[{"id":"CVE-2013-1812","published":"2013-12-12T18:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe ruby-openid gem before 2.2.2 for Ruby allows remote OpenID providers to\ncause a denial of service (CPU consumption) via (1) a large XRDS document\nor (2) an XML Entity Expansion (XEE) attack.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2013/03/03/8","https://bugzilla.novell.com/show_bug.cgi?id=804717","https://www.cve.org/CVERecord?id=CVE-2013-1812"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=702217","https://bugs.launchpad.net/ubuntu/+source/libopenid-ruby/+bug/1190491"],"patches":{"ruby-openid":["upstream: https://github.com/openid/ruby-openid/commit/a3693cef06049563f5b4e4824f4d3211288508ed"],"libopenid-ruby":[]},"tags":{},"packages":[{"name":"libopenid-ruby","source":"https://ubuntu.com/security/cve?package=libopenid-ruby","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=libopenid-ruby","debian":"https://tracker.debian.org/pkg/libopenid-ruby","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"released","description":"2.1.7debian-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"2.1.8debian-1ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.2.2","component":null,"pocket":"security"}]},{"name":"ruby-openid","source":"https://ubuntu.com/security/cve?package=ruby-openid","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=ruby-openid","debian":"https://tracker.debian.org/pkg/ruby-openid","statuses":[{"release_codename":"hardy","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"2.1.8debian-5ubuntu0.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"not-affected","description":"2.1.8debian-6","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2.1.8debian-6, 2.2.2","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2013-1447","published":"2013-12-12T18:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nOpenJPEG 1.3 and earlier allows remote attackers to cause a denial of\nservice (memory consumption or crash) via unspecified vectors related to\nNULL pointer dereferences, division-by-zero, and other errors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://www.cve.org/CVERecord?id=CVE-2013-1447"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731237"],"patches":{"openjpeg":[]},"tags":{},"packages":[{"name":"openjpeg","source":"https://ubuntu.com/security/cve?package=openjpeg","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=openjpeg","debian":"https://tracker.debian.org/pkg/openjpeg","statuses":[{"release_codename":"lucid","status":"released","description":"1.3+dfsg-4+squeeze2build0.10.04.1","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.3+dfsg-4+squeeze2build0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"1.3+dfsg-4.7ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.3+dfsg-4.7","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2013-4458","published":"2013-12-12T00:00:00","updated_at":"2025-08-04T19:24:24.192941+00:00","description":"\nStack-based buffer overflow in the getaddrinfo function in\nsysdeps/posix/getaddrinfo.c in GNU C Library (aka glibc or libc6) 2.18 and\nearlier allows remote attackers to cause a denial of service (crash) via a\n(1) hostname or (2) IP address that triggers a large number of AF_INET6\naddress results.  NOTE: this vulnerability exists because of an incomplete\nfix for CVE-2013-1914.","ubuntu_description":"","notes":[{"author":"sbeattie","note":"this fix was also incomplete, leading to CVE-2016-3706"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://sourceware.org/ml/libc-alpha/2013-10/msg00733.html","https://ubuntu.com/security/notices/USN-2306-1","https://www.cve.org/CVERecord?id=CVE-2013-4458"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=727181","https://sourceware.org/bugzilla/show_bug.cgi?id=16072"],"patches":{"eglibc":["upstream: https://sourceware.org/git/?p=glibc.git;h=7cbcdb3699584db8913ca90f705d6337633ee10f"]},"tags":{},"packages":[{"name":"eglibc","source":"https://ubuntu.com/security/cve?package=eglibc","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=eglibc","debian":"https://tracker.debian.org/pkg/eglibc","statuses":[{"release_codename":"lucid","status":"released","description":"2.11.1-0ubuntu7.14","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"2.15-0ubuntu10.6","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"trusty","status":"not-affected","description":"2.18-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-2306-1"],"notices":[{"id":"USN-2306-1","title":"GNU C Library vulnerabilities","summary":"Several security issues were fixed in the GNU C Library.\n","instructions":"After a standard system update you need to reboot your computer to make\nall the necessary changes.\n","references":[],"published":"2014-08-04T15:37:16.011728","description":"Maksymilian Arciemowicz discovered that the GNU C Library incorrectly\nhandled the getaddrinfo() function. An attacker could use this issue to\ncause a denial of service. This issue only affected Ubuntu 10.04 LTS.\n(CVE-2013-4357)\n\nIt was discovered that the GNU C Library incorrectly handled the\ngetaddrinfo() function. An attacker could use this issue to cause a denial\nof service. This issue only affected Ubuntu 10.04 LTS and Ubuntu 12.04 LTS.\n(CVE-2013-4458)\n\nStephane Chazelas discovered that the GNU C Library incorrectly handled\nlocale environment variables. An attacker could use this issue to possibly\nbypass certain restrictions such as the ForceCommand restrictions in\nOpenSSH. (CVE-2014-0475)\n\nDavid Reid, Glyph Lefkowitz, and Alex Gaynor discovered that the GNU C\nLibrary incorrectly handled posix_spawn_file_actions_addopen() path\narguments. An attacker could use this issue to cause a denial of service.\n(CVE-2014-4043)\n","is_hidden":false,"release_packages":{"lucid":[{"name":"eglibc","version":"2.11.1-0ubuntu7.14","description":"GNU C Library","is_source":true},{"name":"libc6","version":"2.11.1-0ubuntu7.14","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.11.1-0ubuntu7.14"}],"precise":[{"name":"eglibc","version":"2.15-0ubuntu10.6","description":"GNU C Library","is_source":true},{"name":"libc6","version":"2.15-0ubuntu10.6","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.15-0ubuntu10.6"}],"trusty":[{"name":"eglibc","version":"2.19-0ubuntu6.1","description":"GNU C Library","is_source":true},{"name":"eglibc-source","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"glibc-doc","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc-bin","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc-dev-bin","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":true,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-amd64","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-armel","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-dev","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-dev-amd64","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-dev-armel","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-dev-i386","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-dev-ppc64","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-dev-x32","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-i386","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-pic","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-ppc64","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-prof","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-udeb","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libc6-x32","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libnss-dns-udeb","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"libnss-files-udeb","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"multiarch-support","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"},{"name":"nscd","version":"2.19-0ubuntu6.1","is_source":false,"is_visible":false,"source_link":"https://launchpad.net/ubuntu/+source/eglibc","version_link":"https://launchpad.net/ubuntu/+source/eglibc/2.19-0ubuntu6.1","pocket":"security"}]},"type":"USN","cves_ids":["CVE-2013-4357","CVE-2013-4458","CVE-2014-0475","CVE-2014-4043"]}]},{"id":"CVE-2011-4971","published":"2013-12-12T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple integer signedness errors in the (1) process_bin_sasl_auth, (2)\nprocess_bin_complete_sasl_auth, (3) process_bin_update, and (4)\nprocess_bin_append_prepend functions in Memcached 1.4.5 and earlier allow\nremote attackers to cause a denial of service (crash) via a large body\nlength value in a packet.","ubuntu_description":"","notes":[{"author":"seth-arnold","note":"memcached has zero security, ability to connect is already\nextremely dangerous; thus low"}],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-2080-1","https://www.cve.org/CVERecord?id=CVE-2011-4971"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=706426","https://code.google.com/p/memcached/issues/detail?id=192"],"patches":{"memcached":["upstream: https://github.com/memcached/memcached/commit/6695ccbc525c36d693aaa3e8337b36aa0c784424"]},"tags":{},"packages":[{"name":"memcached","source":"https://ubuntu.com/security/cve?package=memcached","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=memcached","debian":"https://tracker.debian.org/pkg/memcached","statuses":[{"release_codename":"hardy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"oneiric","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1.4.13-0ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"1.4.14-0ubuntu1.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"1.4.14-0ubuntu1.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1.4.14-0ubuntu4.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"1.4.16,1.4.13-0.3","component":null,"pocket":"security"}]}],"notices_ids":["USN-2080-1"],"notices":[{"id":"USN-2080-1","title":"Memcached vulnerabilities","summary":"Several security issues were fixed in Memcached.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2014-01-13T19:12:33.010375","description":"Stefan Bucur discovered that Memcached incorrectly handled certain large\nbody lengths. A remote attacker could use this issue to cause Memcached to\ncrash, resulting in a denial of service. (CVE-2011-4971)\n\nJeremy Sowden discovered that Memcached incorrectly handled logging certain\ndetails when the -vv option was used. An attacker could use this issue to\ncause Memcached to crash, resulting in a denial of service. (CVE-2013-0179)\n\nIt was discovered that Memcached incorrectly handled SASL authentication.\nA remote attacker could use this issue to bypass SASL authentication\ncompletely. This issue only affected Ubuntu 12.10, Ubuntu 13.04 and Ubuntu\n13.10. (CVE-2013-7239)\n","is_hidden":false,"release_packages":{"precise":[{"name":"memcached","version":"1.4.13-0ubuntu2.1","description":"A high-performance memory object caching system","is_source":true},{"name":"memcached","version":"1.4.13-0ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/memcached","version_link":"https://launchpad.net/ubuntu/+source/memcached/1.4.13-0ubuntu2.1"}],"saucy":[{"name":"memcached","version":"1.4.14-0ubuntu4.1","description":"A high-performance memory object caching system","is_source":true},{"name":"memcached","version":"1.4.14-0ubuntu4.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/memcached","version_link":"https://launchpad.net/ubuntu/+source/memcached/1.4.14-0ubuntu4.1"}],"quantal":[{"name":"memcached","version":"1.4.14-0ubuntu1.12.10.1","description":"A high-performance memory object caching system","is_source":true},{"name":"memcached","version":"1.4.14-0ubuntu1.12.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/memcached","version_link":"https://launchpad.net/ubuntu/+source/memcached/1.4.14-0ubuntu1.12.10.1"}],"raring":[{"name":"memcached","version":"1.4.14-0ubuntu1.13.04.1","description":"A high-performance memory object caching system","is_source":true},{"name":"memcached","version":"1.4.14-0ubuntu1.13.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/memcached","version_link":"https://launchpad.net/ubuntu/+source/memcached/1.4.14-0ubuntu1.13.04.1"}]},"type":"USN","cves_ids":["CVE-2011-4971","CVE-2013-0179","CVE-2013-7239"]}]},{"id":"CVE-2013-5332","published":"2013-12-11T15:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before\n11.9.900.170 on Windows and Mac OS X and before 11.2.202.332 on Linux,\nAdobe AIR before 3.9.0.1380, Adobe AIR SDK before 3.9.0.1380, and Adobe AIR\nSDK & Compiler before 3.9.0.1380 allow attackers to execute arbitrary code\nor cause a denial of service (memory corruption) via unspecified vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb13-28.html","https://www.cve.org/CVERecord?id=CVE-2013-5332"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.332-0precise2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"11.2.202.332-0quantal2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"11.2.202.332-0raring2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"11.2.202.332-0saucy1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.332","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.332ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"11.2.202.332ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"11.2.202.332ubuntu0.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"11.2.202.332ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.332","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2013-5331","published":"2013-12-11T15:55:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nAdobe Flash Player before 11.7.700.257 and 11.8.x and 11.9.x before\n11.9.900.170 on Windows and Mac OS X and before 11.2.202.332 on Linux,\nAdobe AIR before 3.9.0.1380, Adobe AIR SDK before 3.9.0.1380, and Adobe AIR\nSDK & Compiler before 3.9.0.1380 allow remote attackers to execute\narbitrary code via crafted .swf content that leverages an unspecified \"type\nconfusion,\" as exploited in the wild in December 2013.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://helpx.adobe.com/security/products/flash-player/apsb13-28.html","https://www.cve.org/CVERecord?id=CVE-2013-5331"],"bugs":[""],"patches":{"flashplugin-nonfree":[],"adobe-flashplugin":[]},"tags":{},"packages":[{"name":"adobe-flashplugin","source":"https://ubuntu.com/security/cve?package=adobe-flashplugin","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=adobe-flashplugin","debian":"https://tracker.debian.org/pkg/adobe-flashplugin","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.332-0precise2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"11.2.202.332-0quantal2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"11.2.202.332-0raring2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"11.2.202.332-0saucy1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.332","component":null,"pocket":"security"}]},{"name":"flashplugin-nonfree","source":"https://ubuntu.com/security/cve?package=flashplugin-nonfree","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=flashplugin-nonfree","debian":"https://tracker.debian.org/pkg/flashplugin-nonfree","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"11.2.202.332ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"11.2.202.332ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"11.2.202.332ubuntu0.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"11.2.202.332ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"11.2.202.332","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2013-6428","published":"2013-12-11T15:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe ReST API in OpenStack Orchestration API (Heat) before Havana 2013.2.1\nand Icehouse before icehouse-2 allows remote authenticated users to bypass\nthe tenant scoping restrictions via a modified tenant_id in the request\npath.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"OSSA 2013-035"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://lists.openstack.org/pipermail/openstack-announce/2013-December/000172.html","https://www.cve.org/CVERecord?id=CVE-2013-6428"],"bugs":["https://launchpad.net/bugs/1256983","http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=732033"],"patches":{"heat":[]},"tags":{},"packages":[{"name":"heat","source":"https://ubuntu.com/security/cve?package=heat","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=heat","debian":"https://tracker.debian.org/pkg/heat","statuses":[{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2014.1.rc1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty/esm was DNE [trusty was not-affected [2014.1~rc1-0ubuntu1]]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2013-6426","published":"2013-12-11T15:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe cloudformation-compatible API in OpenStack Orchestration API (Heat)\nbefore Havana 2013.2.1 and Icehouse before icehouse-2 does not properly\nenforce policy rules, which allows local in-instance users to bypass\nintended access restrictions and (1) create a stack via the CreateStack\nmethod or (2) update a stack via the UpdateStack method.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"OSSA 2013-034"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.openwall.com/lists/oss-security/2013/12/11/10","http://lists.openstack.org/pipermail/openstack-announce/2013-December/000170.html","https://www.cve.org/CVERecord?id=CVE-2013-6426"],"bugs":["https://bugs.launchpad.net/heat/+bug/1256049"],"patches":{"heat":["upstream: https://review.openstack.org/61454","upstream: https://review.openstack.org/61452"]},"tags":{},"packages":[{"name":"heat","source":"https://ubuntu.com/security/cve?package=heat","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=heat","debian":"https://tracker.debian.org/pkg/heat","statuses":[{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"2014.1.rc1","component":null,"pocket":"security"},{"release_codename":"trusty","status":"DNE","description":"trusty/esm was DNE [trusty was not-affected [2014.1~rc1-0ubuntu1]]","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2013-6419","published":"2013-12-11T15:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nInteraction error in OpenStack Nova and Neutron before Havana 2013.2.1 and\nicehouse-1 does not validate the instance ID of the tenant making a\nrequest, which allows remote tenants to obtain sensitive metadata by\nspoofing the device ID that is bound to a port, which is not properly\nhandled by (1) api/metadata/handler.py in Nova and (2) the\nneutron-metadata-agent (agent/metadata/agent.py) in Neutron.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"OSSA 2013-033"},{"author":"jdstrand","note":"requires updating both nova and neutron. Ubuntu 13.04 and lower do\nnot have neutron in the archive, so ignoring\nrequires instance_id to be exposed to attacker"}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://lists.openstack.org/pipermail/openstack-announce/2013-December/000169.html","https://www.cve.org/CVERecord?id=CVE-2013-6419"],"bugs":["https://bugs.launchpad.net/bugs/1235450"],"patches":{"nova":["upstream: https://review.openstack.org/61435","upstream: https://review.openstack.org/61428"],"neutron":["upstream: https://review.openstack.org/61442","upstream: https://review.openstack.org/61439"]},"tags":{},"packages":[{"name":"neutron","source":"https://ubuntu.com/security/cve?package=neutron","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=neutron","debian":"https://tracker.debian.org/pkg/neutron","statuses":[{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"1:2013.2.2-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]},{"name":"nova","source":"https://ubuntu.com/security/cve?package=nova","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=nova","debian":"https://tracker.debian.org/pkg/nova","statuses":[{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"quantal","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"not-affected","description":"1:2013.2.2-0ubuntu1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]}],"notices_ids":[],"notices":[]},{"id":"CVE-2013-6391","published":"2013-12-11T15:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe ec2tokens API in OpenStack Identity (Keystone) before Havana 2013.2.1\nand Icehouse before icehouse-2 does not return a trust-scoped token when\none is received, which allows remote trust users to gain privileges by\ngenerating EC2 credentials from a trust-scoped token and using them in an\nec2tokens API request.","ubuntu_description":"","notes":[{"author":"mdeslaur","note":"OSSA 2013-032"},{"author":"jdstrand","note":"per upstream, Ubuntu 13.04 not affected due to improper check which\ndisables impersonation entirely. Upstream has not released a patch yet for\ngrizzly (Ubuntu 13.04) as of 2013-12-17. A fix for Ubuntu 13.04 may happen\nin a future update."}],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://lists.openstack.org/pipermail/openstack-announce/2013-December/000168.html","https://ubuntu.com/security/notices/USN-2061-1","https://www.cve.org/CVERecord?id=CVE-2013-6391"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731981","https://bugs.launchpad.net/keystone/+bug/1242597"],"patches":{"keystone":["upstream: https://review.openstack.org/61425","upstream: https://review.openstack.org/61419"]},"tags":{},"packages":[{"name":"keystone","source":"https://ubuntu.com/security/cve?package=keystone","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=keystone","debian":"https://tracker.debian.org/pkg/keystone","statuses":[{"release_codename":"lucid","status":"DNE","description":"","component":null,"pocket":"security"},{"release_codename":"precise","status":"not-affected","description":"code-not-present","component":null,"pocket":"security"},{"release_codename":"quantal","status":"not-affected","description":"code-not-present","component":null,"pocket":"security"},{"release_codename":"raring","status":"ignored","description":"","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1:2013.2-0ubuntu1.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needed","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-2061-1"],"notices":[{"id":"USN-2061-1","title":"OpenStack Keystone vulnerability","summary":"Keystone access controls could be circumvented via EC2-style tokens.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2013-12-19T22:34:00.600511","description":"Steven Hardy discovered that Keystone did not properly enforce trusts when\nusing the ec2tokens API. An authenticated attacker could exploit this to\nretrieve a token not scoped to the trust and elevate privileges to the\ntrustor's roles.\n","is_hidden":false,"release_packages":{"saucy":[{"name":"keystone","version":"1:2013.2-0ubuntu1.2","description":"OpenStack identity service","is_source":true},{"name":"python-keystone","version":"1:2013.2-0ubuntu1.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/keystone","version_link":"https://launchpad.net/ubuntu/+source/keystone/1:2013.2-0ubuntu1.2"}]},"type":"USN","cves_ids":["CVE-2013-6391"]}]},{"id":"CVE-2013-6673","published":"2013-12-11T00:00:00","updated_at":"2025-08-25T21:04:55.315096+00:00","description":"\nMozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird\nbefore 24.2, and SeaMonkey before 2.23 do not recognize a user's removal of\ntrust from an EV X.509 certificate, which makes it easier for\nman-in-the-middle attackers to spoof SSL servers in opportunistic\ncircumstances via a valid certificate that is unacceptable to the user.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":5.9,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:N/I:H/A:N","attackVector":"NETWORK","attackComplexity":"HIGH","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"NONE","integrityImpact":"HIGH","availabilityImpact":"NONE","baseScore":5.9,"baseSeverity":"MEDIUM"}}},"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-113.html","https://ubuntu.com/security/notices/USN-2052-1","https://ubuntu.com/security/notices/USN-2053-1","https://www.cve.org/CVERecord?id=CVE-2013-6673"],"bugs":[""],"patches":{"firefox":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"24.2.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1","USN-2053-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]},{"id":"USN-2053-1","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258653"],"published":"2013-12-11T15:14:40.591483","description":"Ben Turner, Bobby Holley, Jesse Ruderman and Christian Holler discovered\nmultiple memory safety issues in Thunderbird. If a user were tricked in to\nopening a specially crafted message with scripting enabled, an attacker\ncould potentially exploit these to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5609)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. If a user had enabled scripting, an attacker could\npotentially exploit this to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nThunderbird. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5618)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. If a user had enabled\nscripting, an attacker could potentially exploit this to execute\narbitrary code with the privileges of the user invoking Thunderbird.\n(CVE-2013-6671)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. If a\nuser had enabled scripting, an attacker could potentially exploit this\nto cause a denial of service via application crash, or execute arbitrary\ncode with the privileges of the user invoking Thunderbird. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. If a user had enabled scripting, an attacker\ncould possibly exploit this to cause undefined behaviour with a potential\nsecurity impact. (CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.04.1"}],"saucy":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.10.1"}],"quantal":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.10.1"}],"raring":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.04.1"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5613","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6673"]}]},{"id":"CVE-2013-6672","published":"2013-12-11T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMozilla Firefox before 26.0 and SeaMonkey before 2.23 on Linux allow\nuser-assisted remote attackers to read clipboard data by leveraging certain\nmiddle-click paste operations.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-112.html","https://ubuntu.com/security/notices/USN-2052-1","https://www.cve.org/CVERecord?id=CVE-2013-6672"],"bugs":[""],"patches":{"firefox":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]}]},{"id":"CVE-2013-6671","published":"2013-12-11T00:00:00","updated_at":"2025-08-25T21:04:47.960924+00:00","description":"\nThe nsGfxScrollFrameInner::IsLTR function in Mozilla Firefox before 26.0,\nFirefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before\n2.23 allows remote attackers to execute arbitrary code via crafted use of\nJavaScript code for ordered list elements.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-111.html","https://ubuntu.com/security/notices/USN-2052-1","https://ubuntu.com/security/notices/USN-2053-1","https://www.cve.org/CVERecord?id=CVE-2013-6671"],"bugs":[""],"patches":{"firefox":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"24.2.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1","USN-2053-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]},{"id":"USN-2053-1","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258653"],"published":"2013-12-11T15:14:40.591483","description":"Ben Turner, Bobby Holley, Jesse Ruderman and Christian Holler discovered\nmultiple memory safety issues in Thunderbird. If a user were tricked in to\nopening a specially crafted message with scripting enabled, an attacker\ncould potentially exploit these to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5609)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. If a user had enabled scripting, an attacker could\npotentially exploit this to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nThunderbird. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5618)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. If a user had enabled\nscripting, an attacker could potentially exploit this to execute\narbitrary code with the privileges of the user invoking Thunderbird.\n(CVE-2013-6671)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. If a\nuser had enabled scripting, an attacker could potentially exploit this\nto cause a denial of service via application crash, or execute arbitrary\ncode with the privileges of the user invoking Thunderbird. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. If a user had enabled scripting, an attacker\ncould possibly exploit this to cause undefined behaviour with a potential\nsecurity impact. (CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.04.1"}],"saucy":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.10.1"}],"quantal":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.10.1"}],"raring":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.04.1"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5613","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6673"]}]},{"id":"CVE-2013-6420","published":"2013-12-11T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nThe asn1_time_to_time_t function in ext/openssl/openssl.c in PHP before\n5.3.28, 5.4.x before 5.4.23, and 5.5.x before 5.5.7 does not properly parse\n(1) notBefore and (2) notAfter timestamps in X.509 certificates, which\nallows remote attackers to execute arbitrary code or cause a denial of\nservice (memory corruption) via a crafted certificate that is not properly\nhandled by the openssl_x509_parse function.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["https://ubuntu.com/security/notices/USN-2055-1","https://www.cve.org/CVERecord?id=CVE-2013-6420"],"bugs":["http://bugs.debian.org/cgi-bin/bugreport.cgi?bug=731895"],"patches":{"php5":["upstream: http://git.php.net/?p=php-src.git;a=commit;h=c1224573c773b6845e83505f717fbf820fc18415","upstream: http://git.php.net/?p=php-src.git;a=commit;h=6f739318fd3dc04a01aec762d449949db481bf5d"]},"tags":{},"packages":[{"name":"php5","source":"https://ubuntu.com/security/cve?package=php5","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=php5","debian":"https://tracker.debian.org/pkg/php5","statuses":[{"release_codename":"lucid","status":"released","description":"5.3.2-1ubuntu4.22","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"5.3.10-1ubuntu3.9","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"5.4.6-1ubuntu1.5","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"5.4.9-4ubuntu2.4","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"5.5.3+dfsg-1ubuntu2.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"needs-triage","description":"","component":null,"pocket":"security"}]}],"notices_ids":["USN-2055-1"],"notices":[{"id":"USN-2055-1","title":"PHP vulnerabilities","summary":"Several security issues were fixed in PHP.\n","instructions":"In general, a standard system update will make all the necessary changes.\n","references":[],"published":"2013-12-12T16:19:33.109052","description":"Stefan Esser discovered that PHP incorrectly parsed certificates. An\nattacker could use a malformed certificate to cause PHP to crash, resulting\nin a denial of service, or possibly execute arbitrary code. (CVE-2013-6420)\n\nIt was discovered that PHP incorrectly handled DateInterval objects. An\nattacker could use this issue to cause PHP to crash, resulting in a denial\nof service. (CVE-2013-6712)\n","is_hidden":false,"release_packages":{"precise":[{"name":"php5","version":"5.3.10-1ubuntu3.9","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"php5-cli","version":"5.3.10-1ubuntu3.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.9"},{"name":"php5-cgi","version":"5.3.10-1ubuntu3.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.9"},{"name":"libapache2-mod-php5","version":"5.3.10-1ubuntu3.9","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.10-1ubuntu3.9"}],"saucy":[{"name":"php5","version":"5.5.3+dfsg-1ubuntu2.1","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"php5-cli","version":"5.5.3+dfsg-1ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.3+dfsg-1ubuntu2.1"},{"name":"php5-cgi","version":"5.5.3+dfsg-1ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.3+dfsg-1ubuntu2.1"},{"name":"libapache2-mod-php5","version":"5.5.3+dfsg-1ubuntu2.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.5.3+dfsg-1ubuntu2.1"}],"lucid":[{"name":"php5","version":"5.3.2-1ubuntu4.22","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"php5-cli","version":"5.3.2-1ubuntu4.22","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.2-1ubuntu4.22"},{"name":"php5-cgi","version":"5.3.2-1ubuntu4.22","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.2-1ubuntu4.22"},{"name":"libapache2-mod-php5","version":"5.3.2-1ubuntu4.22","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.3.2-1ubuntu4.22"}],"quantal":[{"name":"php5","version":"5.4.6-1ubuntu1.5","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"php5-cli","version":"5.4.6-1ubuntu1.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.4.6-1ubuntu1.5"},{"name":"php5-cgi","version":"5.4.6-1ubuntu1.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.4.6-1ubuntu1.5"},{"name":"libapache2-mod-php5","version":"5.4.6-1ubuntu1.5","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.4.6-1ubuntu1.5"}],"raring":[{"name":"php5","version":"5.4.9-4ubuntu2.4","description":"HTML-embedded scripting language interpreter","is_source":true},{"name":"php5-cli","version":"5.4.9-4ubuntu2.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.4.9-4ubuntu2.4"},{"name":"php5-cgi","version":"5.4.9-4ubuntu2.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.4.9-4ubuntu2.4"},{"name":"libapache2-mod-php5","version":"5.4.9-4ubuntu2.4","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/php5","version_link":"https://launchpad.net/ubuntu/+source/php5/5.4.9-4ubuntu2.4"}]},"type":"USN","cves_ids":["CVE-2013-6420","CVE-2013-6712"]}]},{"id":"CVE-2013-5619","published":"2013-12-11T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMultiple integer overflows in the binary-search implementation in\nSpiderMonkey in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 might\nallow remote attackers to cause a denial of service (out-of-bounds array\naccess) or possibly have unspecified other impact via crafted JavaScript\ncode.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-110.html","https://ubuntu.com/security/notices/USN-2052-1","https://www.cve.org/CVERecord?id=CVE-2013-5619"],"bugs":[""],"patches":{"firefox":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]}]},{"id":"CVE-2013-5618","published":"2013-12-11T00:00:00","updated_at":"2025-08-25T20:58:52.202805+00:00","description":"\nUse-after-free vulnerability in the nsNodeUtils::LastRelease function in\nthe table-editing user interface in the editor component in Mozilla Firefox\nbefore 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and\nSeaMonkey before 2.23 allows remote attackers to execute arbitrary code by\ntriggering improper garbage collection.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-109.html","https://ubuntu.com/security/notices/USN-2052-1","https://ubuntu.com/security/notices/USN-2053-1","https://www.cve.org/CVERecord?id=CVE-2013-5618"],"bugs":[""],"patches":{"firefox":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"24.2.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1","USN-2053-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]},{"id":"USN-2053-1","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258653"],"published":"2013-12-11T15:14:40.591483","description":"Ben Turner, Bobby Holley, Jesse Ruderman and Christian Holler discovered\nmultiple memory safety issues in Thunderbird. If a user were tricked in to\nopening a specially crafted message with scripting enabled, an attacker\ncould potentially exploit these to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5609)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. If a user had enabled scripting, an attacker could\npotentially exploit this to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nThunderbird. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5618)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. If a user had enabled\nscripting, an attacker could potentially exploit this to execute\narbitrary code with the privileges of the user invoking Thunderbird.\n(CVE-2013-6671)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. If a\nuser had enabled scripting, an attacker could potentially exploit this\nto cause a denial of service via application crash, or execute arbitrary\ncode with the privileges of the user invoking Thunderbird. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. If a user had enabled scripting, an attacker\ncould possibly exploit this to cause undefined behaviour with a potential\nsecurity impact. (CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.04.1"}],"saucy":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.10.1"}],"quantal":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.10.1"}],"raring":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.04.1"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5613","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6673"]}]},{"id":"CVE-2013-5616","published":"2013-12-11T00:00:00","updated_at":"2025-08-25T20:58:52.202805+00:00","description":"\nUse-after-free vulnerability in the\nnsEventListenerManager::HandleEventSubType function in Mozilla Firefox\nbefore 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and\nSeaMonkey before 2.23 allows remote attackers to execute arbitrary code or\ncause a denial of service (heap memory corruption) via vectors related to\nmListeners event listeners.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-108.html","https://ubuntu.com/security/notices/USN-2052-1","https://ubuntu.com/security/notices/USN-2053-1","https://www.cve.org/CVERecord?id=CVE-2013-5616"],"bugs":[""],"patches":{"firefox":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"24.2.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1","USN-2053-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]},{"id":"USN-2053-1","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258653"],"published":"2013-12-11T15:14:40.591483","description":"Ben Turner, Bobby Holley, Jesse Ruderman and Christian Holler discovered\nmultiple memory safety issues in Thunderbird. If a user were tricked in to\nopening a specially crafted message with scripting enabled, an attacker\ncould potentially exploit these to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5609)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. If a user had enabled scripting, an attacker could\npotentially exploit this to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nThunderbird. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5618)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. If a user had enabled\nscripting, an attacker could potentially exploit this to execute\narbitrary code with the privileges of the user invoking Thunderbird.\n(CVE-2013-6671)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. If a\nuser had enabled scripting, an attacker could potentially exploit this\nto cause a denial of service via application crash, or execute arbitrary\ncode with the privileges of the user invoking Thunderbird. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. If a user had enabled scripting, an attacker\ncould possibly exploit this to cause undefined behaviour with a potential\nsecurity impact. (CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.04.1"}],"saucy":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.10.1"}],"quantal":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.10.1"}],"raring":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.04.1"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5613","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6673"]}]},{"id":"CVE-2013-5615","published":"2013-12-11T00:00:00","updated_at":"2025-08-25T20:58:52.202805+00:00","description":"\nThe JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR\n24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does\nnot properly enforce certain typeset restrictions on the generation of\nGetElementIC typed array stubs, which has unspecified impact and remote\nattack vectors.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-115.html","https://ubuntu.com/security/notices/USN-2052-1","https://ubuntu.com/security/notices/USN-2053-1","https://www.cve.org/CVERecord?id=CVE-2013-5615"],"bugs":[""],"patches":{"firefox":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"24.2.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1","USN-2053-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]},{"id":"USN-2053-1","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258653"],"published":"2013-12-11T15:14:40.591483","description":"Ben Turner, Bobby Holley, Jesse Ruderman and Christian Holler discovered\nmultiple memory safety issues in Thunderbird. If a user were tricked in to\nopening a specially crafted message with scripting enabled, an attacker\ncould potentially exploit these to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5609)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. If a user had enabled scripting, an attacker could\npotentially exploit this to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nThunderbird. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5618)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. If a user had enabled\nscripting, an attacker could potentially exploit this to execute\narbitrary code with the privileges of the user invoking Thunderbird.\n(CVE-2013-6671)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. If a\nuser had enabled scripting, an attacker could potentially exploit this\nto cause a denial of service via application crash, or execute arbitrary\ncode with the privileges of the user invoking Thunderbird. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. If a user had enabled scripting, an attacker\ncould possibly exploit this to cause undefined behaviour with a potential\nsecurity impact. (CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.04.1"}],"saucy":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.10.1"}],"quantal":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.10.1"}],"raring":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.04.1"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5613","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6673"]}]},{"id":"CVE-2013-5614","published":"2013-12-11T00:00:00","updated_at":"2024-07-24T15:57:39.284958+00:00","description":"\nMozilla Firefox before 26.0 and SeaMonkey before 2.23 do not properly\nconsider the sandbox attribute of an IFRAME element during processing of a\ncontained OBJECT element, which allows remote attackers to bypass intended\nsandbox restrictions via a crafted web site.","ubuntu_description":"","notes":[],"codename":null,"priority":"low","cvss3":null,"impact":null,"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-107.html","https://ubuntu.com/security/notices/USN-2052-1","https://www.cve.org/CVERecord?id=CVE-2013-5614"],"bugs":[""],"patches":{"firefox":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]}]},{"id":"CVE-2013-5613","published":"2013-12-11T00:00:00","updated_at":"2025-08-25T20:58:52.202805+00:00","description":"\nUse-after-free vulnerability in the PresShell::DispatchSynthMouseMove\nfunction in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2,\nThunderbird before 24.2, and SeaMonkey before 2.23 allows remote attackers\nto execute arbitrary code or cause a denial of service (heap memory\ncorruption) via vectors involving synthetic mouse movement, related to the\nRestyleManager::GetHoverGeneration function.","ubuntu_description":"","notes":[],"codename":null,"priority":"medium","cvss3":9.8,"impact":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":9.8,"baseSeverity":"CRITICAL"}}},"status":"active","mitigation":"","references":["http://www.mozilla.org/security/announce/2013/mfsa2013-114.html","https://ubuntu.com/security/notices/USN-2052-1","https://ubuntu.com/security/notices/USN-2053-1","https://www.cve.org/CVERecord?id=CVE-2013-5613"],"bugs":[""],"patches":{"firefox":[],"thunderbird":[]},"tags":{},"packages":[{"name":"firefox","source":"https://ubuntu.com/security/cve?package=firefox","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=firefox","debian":"https://tracker.debian.org/pkg/firefox","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"26.0+build2-0ubuntu0.12.04.2","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"26.0+build2-0ubuntu0.12.10.2","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"26.0+build2-0ubuntu0.13.04.2","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"26.0+build2-0ubuntu0.13.10.2","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"26.0","component":null,"pocket":"security"}]},{"name":"thunderbird","source":"https://ubuntu.com/security/cve?package=thunderbird","ubuntu":"https://packages.ubuntu.com/search?suite=all&section=all&arch=any&searchon=sourcenames&keywords=thunderbird","debian":"https://tracker.debian.org/pkg/thunderbird","statuses":[{"release_codename":"lucid","status":"ignored","description":"end of life","component":null,"pocket":"security"},{"release_codename":"precise","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.04.1","component":null,"pocket":"security"},{"release_codename":"quantal","status":"released","description":"1:24.2.0+build1-0ubuntu0.12.10.1","component":null,"pocket":"security"},{"release_codename":"raring","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.04.1","component":null,"pocket":"security"},{"release_codename":"saucy","status":"released","description":"1:24.2.0+build1-0ubuntu0.13.10.1","component":null,"pocket":"security"},{"release_codename":"upstream","status":"released","description":"24.2.0","component":null,"pocket":"security"}]}],"notices_ids":["USN-2052-1","USN-2053-1"],"notices":[{"id":"USN-2052-1","title":"Firefox vulnerabilities","summary":"Firefox could be made to crash or run programs as your login if it\nopened a malicious website.\n","instructions":"After a standard system update you need to restart Firefox to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258513"],"published":"2013-12-11T14:29:12.911591","description":"Ben Turner, Bobby Holley, Jesse Ruderman, Christian Holler and Christoph\nDiehl discovered multiple memory safety issues in Firefox. If a user were\ntricked in to opening a specially crafted website, an attacker could\npotentially exploit these to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nFirefox. (CVE-2013-5609, CVE-2013-5610)\n\nMyk Melez discovered that the doorhanger notification for web app\ninstallation could persist between page navigations. An attacker could\npotentially exploit this to conduct clickjacking attacks. (CVE-2013-5611)\n\nMasato Kinugawa discovered that pages with missing character set encoding\ninformation can inherit character encodings across navigations from\nanother domain. An attacker could potentially exploit this to conduct\ncross-site scripting attacks. (CVE-2013-5612)\n\nDaniel Veditz discovered that a sandboxed iframe could use an object\nelement to bypass its own restrictions. (CVE-2013-5614)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. An attacker could potentially exploit this to cause a\ndenial of service via application crash, or execute arbitrary code with\nthe privileges of the user invoking Firefox. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5618)\n\nDan Gohman discovered that binary search algorithms in Spidermonkey\nused arithmetic prone to overflow in several places. However, this\nis issue not believed to be exploitable. (CVE-2013-5619)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. An attacker could\npotentially exploit this to execute arbitrary code with the privileges\nof the user invoking Firefox. (CVE-2013-6671)\n\nVincent Lefevre discovered that web content could access clipboard data\nunder certain circumstances, resulting in information disclosure.\n(CVE-2013-6672)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Firefox. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. An attacker could possibly exploit this to\ncause undefined behaviour with a potential security impact.\n(CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.04.2"}],"saucy":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.10.2"}],"quantal":[{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.12.10.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.12.10.2"}],"raring":[{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","description":"Mozilla Open Source web browser","is_source":true},{"name":"firefox","version":"26.0+build2-0ubuntu0.13.04.2","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/firefox","version_link":"https://launchpad.net/ubuntu/+source/firefox/26.0+build2-0ubuntu0.13.04.2"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5610","CVE-2013-5611","CVE-2013-5612","CVE-2013-5613","CVE-2013-5614","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-5619","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6672","CVE-2013-6673"]},{"id":"USN-2053-1","title":"Thunderbird vulnerabilities","summary":"Several security issues were fixed in Thunderbird.\n","instructions":"After a standard system update you need to restart Thunderbird to make\nall the necessary changes.\n","references":["https://launchpad.net/bugs/1258653"],"published":"2013-12-11T15:14:40.591483","description":"Ben Turner, Bobby Holley, Jesse Ruderman and Christian Holler discovered\nmultiple memory safety issues in Thunderbird. If a user were tricked in to\nopening a specially crafted message with scripting enabled, an attacker\ncould potentially exploit these to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5609)\n\nTyson Smith and Jesse Schwartzentruber discovered a use-after-free in\nevent listeners. If a user had enabled scripting, an attacker could\npotentially exploit this to cause a denial of service via application\ncrash, or execute arbitrary code with the privileges of the user invoking\nThunderbird. (CVE-2013-5616)\n\nA use-after-free was discovered in the table editing interface. An\nattacker could potentially exploit this to cause a denial of service via\napplication crash, or execute arbitrary code with the privileges of the\nuser invoking Thunderbird. (CVE-2013-5618)\n\nTyson Smith and Jesse Schwartzentruber discovered a crash when inserting\nan ordered list in to a document using script. If a user had enabled\nscripting, an attacker could potentially exploit this to execute\narbitrary code with the privileges of the user invoking Thunderbird.\n(CVE-2013-6671)\n\nSijie Xia discovered that trust settings for built-in EV root certificates\nwere ignored under certain circumstances, removing the ability for a user\nto manually untrust certificates from specific authorities.\n(CVE-2013-6673)\n\nTyson Smith, Jesse Schwartzentruber and Atte Kettunen discovered a\nuse-after-free in functions for synthetic mouse movement handling. If a\nuser had enabled scripting, an attacker could potentially exploit this\nto cause a denial of service via application crash, or execute arbitrary\ncode with the privileges of the user invoking Thunderbird. (CVE-2013-5613)\n\nEric Faust discovered that GetElementIC typed array stubs can be generated\noutside observed typesets. If a user had enabled scripting, an attacker\ncould possibly exploit this to cause undefined behaviour with a potential\nsecurity impact. (CVE-2013-5615)\n\nMichal Zalewski discovered several issues with JPEG image handling. An\nattacker could potentially exploit these to obtain sensitive information.\n(CVE-2013-6629, CVE-2013-6630)\n","is_hidden":false,"release_packages":{"precise":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.04.1"}],"saucy":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.10.1"}],"quantal":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.12.10.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.12.10.1"}],"raring":[{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","description":"Mozilla Open Source mail and newsgroup client","is_source":true},{"name":"thunderbird","version":"1:24.2.0+build1-0ubuntu0.13.04.1","is_source":false,"source_link":"https://launchpad.net/ubuntu/+source/thunderbird","version_link":"https://launchpad.net/ubuntu/+source/thunderbird/1:24.2.0+build1-0ubuntu0.13.04.1"}]},"type":"USN","cves_ids":["CVE-2013-5609","CVE-2013-5613","CVE-2013-5615","CVE-2013-5616","CVE-2013-5618","CVE-2013-6629","CVE-2013-6630","CVE-2013-6671","CVE-2013-6673"]}]}],"offset":66460,"limit":20,"total_results":79316}