CVE-2012-4202

NameCVE-2012-4202
DescriptionHeap-based buffer overflow in the image::RasterImage::DrawFrameTo function in Mozilla Firefox before 17.0, Firefox ESR 10.x before 10.0.11, Thunderbird before 17.0, Thunderbird ESR 10.x before 10.0.11, and SeaMonkey before 2.14 allows remote attackers to execute arbitrary code via a crafted GIF image.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, GitHub advisories/code/issues, web search, more)

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
iceapesourcesqueeze(not affected)
iceapesource(unstable)2.7.11-1
icedovesourcesqueeze(not affected)
icedovesource(unstable)10.0.11-1
iceweaselsourcesqueeze(not affected)
iceweaselsource(unstable)10.0.11esr-1

Notes

[squeeze] - iceweasel <not-affected> (Vulnerable code not present)
[squeeze] - icedove <not-affected> (Vulnerable code not present)
[squeeze] - iceape <not-affected> (Vulnerable code not present)

Search for package or bug name: Reporting problems