suse · CVE-2013-1730

Quick triage

Priority: medium Published: 2021-05-30 13:10:28 UTC Updated: 2026-04-18 19:00:19 UTC

View at Official suse advisory, NVD, CVE.org · CVE detail

Freshness: upstream tracker timestamp is available; use API updated time as primary recency signal.

Tracker summary

CVE-2013-1730 severity moderate: SUSE including 82 source package names (MozillaFirefox-140.2.0-160000.1.2, MozillaFirefox-17.0.9esr-0.3.1, …), 110 product×package rows across 37 product lines (SUSE Linux Enterprise Desktop 11 SP2, SUSE Linux Enterprise Desktop 11 SP3, … (37 product lines)): Fixed 110.

Description:

Mozilla Firefox before 24.0, Firefox ESR 17.x before 17.0.9, Thunderbird before 24.0, Thunderbird ESR 17.x before 17.0.9, and SeaMonkey before 2.21 do not properly handle movement of XBL-backed nodes between documents, which allows remote attackers to execute arbitrary code or cause a denial of service (JavaScript compartment mismatch, or assertion failure and application exit) via a crafted web site.

cvelogic Threat Intelligence