Oval Definition:oval:com.ubuntu.precise:def:20130764000
Revision Date:2013-01-13Version:1
Title:CVE-2013-0764 on Ubuntu 12.04 LTS (precise) - medium.
Description:The nsSOCKSSocketInfo::ConnectToProxy function in Mozilla Firefox before 18.0, Firefox ESR 17.x before 17.0.2, Thunderbird before 17.0.2, Thunderbird ESR 17.x before 17.0.2, and SeaMonkey before 2.15 does not ensure thread safety for SSL sessions, which allows remote attackers to execute arbitrary code via crafted data, as demonstrated by e-mail message data.
Family:unixClass:vulnerability
Status:Reference(s):CVE-2013-0764
Platform(s):Ubuntu 12.04 LTS
Product(s):
Definition Synopsis
  • Ubuntu 12.04 LTS (precise) is installed.
  • AND Package Information
  • The 'firefox' package in precise was vulnerable but has been fixed (note: '18.0+build1-0ubuntu0.12.04.3').
  • OR The 'thunderbird' package in precise was vulnerable but has been fixed (note: '17.0.2+build1-0ubuntu0.12.04.1').
  • BACK