CISA Known Exploited Vulnerability

CVE-2013-1675

Mozilla · Firefox

Mozilla Firefox Information Disclosure Vulnerability

Date added
BOD 22-01 due date
CWE CWE-119
Ransomware Unknown

CISA description

Mozilla Firefox does not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.

Required action

Apply updates per vendor instructions.