CVE-2012-4186
Heap-based buffer overflow in the nsWaveReader::DecodeAudioData function in Mozilla Firefox before 16.0, Firefox ESR 10.x before 10.0.8, Thunderbird before 16.0, Thunderbird ESR 10.x before 10.0.8, and SeaMonkey before 2.13 allows remote attackers to execute arbitrary code via unspecified vectors.
- Affected products
- Centos, Firefox Esr, Firefox, Red Hat, Seamonkey, Suse, Thunderbird, Thunderbird Esr
- Mozilla Firefox
- < 10.0.8
- Fix
- Available
- CVSS 2.0
- 9.3 HIGH
- EPSS
- 14.7% (96th percentile)
- Weakness
- CWE-119
- NVD status
- Modified
- Published
- 2012-10-10
CVE-2012-4186 at NVD
1 known exploit for CVE-2012-4186
Proof-of-concept code and exploit modules indexed by Sploitus