Candidate: CVE-2013-0799 PublicDate: 2013-04-03 11:56:00 UTC References: https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2013-0799 http://www.mozilla.org/security/announce/2013/mfsa2013-32.html Description: Buffer overflow in the Mozilla Maintenance Service in Mozilla Firefox before 20.0, Firefox ESR 17.x before 17.0.5, Thunderbird before 17.0.5, and Thunderbird ESR 17.x before 17.0.5 on Windows allows local users to gain privileges via crafted arguments. Ubuntu-Description: Notes: chrisccoulson> Affects the Mozilla Maintenance Service on Windows only Bugs: Priority: medium Discovered-by: Assigned-to: chrisccoulson CVSS: Patches_firefox: upstream_firefox: released (20.0) hardy_firefox: ignored (reached end-of-life) lucid_firefox: not-affected oneiric_firefox: not-affected precise_firefox: not-affected quantal_firefox: not-affected devel_firefox: not-affected Patches_thunderbird: upstream_thunderbird: released (17.0.5) hardy_thunderbird: ignored (reached end-of-life) lucid_thunderbird: not-affected oneiric_thunderbird: not-affected precise_thunderbird: not-affected quantal_thunderbird: not-affected devel_thunderbird: not-affected