Sploitus

CVE-2013-1708

1 known exploit for CVE-2013-1708

Mozilla Firefox before 23.0 and SeaMonkey before 2.20 allow remote attackers to cause a denial of service (application crash) via a crafted WAV file that is not properly handled by the nsCString::CharAt function.

Affected products
Alt Linux, Firefox, Seamonkey, Suse
Mozilla Seamonkey
≤ 2.20, 2.0, 2.0.1, 2.0.2, 2.0.3, 2.0.4, 2.0.5, 2.0.6, 2.0.7, 2.0.8, 2.0.9, 2.0.10, 2.0.11, 2.0.12, 2.0.13, 2.0.14, 2.1, 2.2, 2.3, 2.3.1, 2.3.2, 2.3.3, 2.4, 2.4.1, 2.5, 2.6, 2.6.1, 2.7, 2.7.1, 2.7.2, 2.8, 2.9, 2.9.1, 2.10, 2.10.1, 2.11, 2.12, 2.12.1, 2.13, 2.13.1
Fix
Available
CVSS 2.0
4.3 MEDIUM
EPSS
3.2% (87th percentile)
NVD status
Modified
Published
2013-08-07
CVE-2013-1708 at NVD
Authoritative description, scoring and affected products

1 known exploit for CVE-2013-1708

Proof-of-concept code and exploit modules indexed by Sploitus