Home/CVEs/CVE-2013-1690/

CVE-2013-1690 - Mozilla Firefox and Thunderbird Denial-of-Service Vulnerability

Project:Mozilla

Product:Firefox and Thunderbird

Date Added:2022-03-28Due Date:2022-04-18

Vulnerability Name

Mozilla Firefox and Thunderbird Denial-of-Service Vulnerability

Description

Mozilla Firefox and Thunderbird do not properly handle onreadystatechange events in conjunction with page reloading, which allows remote attackers to cause a denial-of-service (DoS) or possibly execute malicious code via a crafted web site.

Known To Be Used in Ransomware Campaigns?

Unknown

Action

Apply updates per vendor instructions.

Additional Notes

https://nvd.nist.gov/vuln/detail/CVE-2013-1690