{"api_version":"1","generated_at":"2026-07-23T10:24:18+00:00","cve":"CVE-2013-5615","urls":{"html":"https://cve.report/CVE-2013-5615","api":"https://cve.report/api/cve/CVE-2013-5615.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2013-5615","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2013-5615"},"summary":{"title":"CVE-2013-5615","description":"The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does not properly enforce certain typeset restrictions on the generation of GetElementIC typed array stubs, which has unspecified impact and remote attack vectors.","state":"PUBLISHED","assigner":"mozilla","published_at":"2013-12-11 15:55:12","updated_at":"2026-04-29 01:13:23"},"problem_types":["NVD-CWE-noinfo","n/a"],"metrics":[{"version":"3.1","source":"nvd@nist.gov","type":"Primary","score":"9.8","severity":"CRITICAL","vector":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","data":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"}},{"version":"2.0","source":"nvd@nist.gov","type":"Primary","score":"7.5","severity":"","vector":"AV:N/AC:L/Au:N/C:P/I:P/A:P","data":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"}}],"references":[{"url":"http://www.ubuntu.com/usn/USN-2052-1","name":"http://www.ubuntu.com/usn/USN-2052-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"USN-2052-1: Firefox vulnerabilities | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00087.html","name":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00087.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"openSUSE-SU-2013:1918-1: moderate: update for MozillaFirefox","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00086.html","name":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00086.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"openSUSE-SU-2013:1917-1: moderate: update for MozillaFirefox","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124108.html","name":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124108.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"[SECURITY] Fedora 19 Update: thunderbird-24.2.0-2.fc19","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00085.html","name":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00085.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"openSUSE-SU-2013:1916-1: moderate: update for MozillaFirefox","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://security.gentoo.org/glsa/201504-01","name":"https://security.gentoo.org/glsa/201504-01","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Gentoo Security","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=929261","name":"https://bugzilla.mozilla.org/show_bug.cgi?id=929261","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Exploit","Issue Tracking","Vendor Advisory"],"title":"929261 – (CVE-2013-5615) GetElementIC typed array stub doesn't property respect monitoredResult()","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00120.html","name":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00120.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"openSUSE-SU-2013:1958-1: moderate: update for MozillaThunderbird","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id/1029476","name":"http://www.securitytracker.com/id/1029476","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Mozilla Seamonkey Multiple Flaws Let Remote Users Execute Arbitrary Code and Conduct Cross-Site Scripting Attacks - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00121.html","name":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00121.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"openSUSE-SU-2013:1959-1: moderate: update for MozillaThunderbird","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/123437.html","name":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/123437.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"[SECURITY] Fedora 19 Update: firefox-26.0-2.fc19","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.mozilla.org/security/announce/2013/mfsa2013-115.html","name":"http://www.mozilla.org/security/announce/2013/mfsa2013-115.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Vendor Advisory"],"title":"GetElementIC typed array stubs can be generated outside observed typesets — Mozilla","mime":"text/html","httpstatus":"200","archivestatus":"0"},{"url":"http://lists.opensuse.org/opensuse-updates/2014-01/msg00002.html","name":"http://lists.opensuse.org/opensuse-updates/2014-01/msg00002.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"openSUSE-SU-2014:0008-1: moderate: update for seamonkey","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.securitytracker.com/id/1029470","name":"http://www.securitytracker.com/id/1029470","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory","VDB Entry"],"title":"Mozilla Firefox Multiple Flaws Let Remote Users Execute Arbitrary Code and Conduct Cross-Site Scripting Attacks - SecurityTracker","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.fedoraproject.org/pipermail/package-announce/2014-January/125470.html","name":"http://lists.fedoraproject.org/pipermail/package-announce/2014-January/125470.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"[SECURITY] Fedora 18 Update: thunderbird-24.2.0-2.fc18","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00010.html","name":"http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00010.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"[security-announce] SUSE-SU-2013:1919-1: important: Security update for","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.ubuntu.com/usn/USN-2053-1","name":"http://www.ubuntu.com/usn/USN-2053-1","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"USN-2053-1: Thunderbird vulnerabilities | Ubuntu","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124257.html","name":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124257.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"[SECURITY] Fedora 20 Update: firefox-26.0-3.fc20","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00119.html","name":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00119.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Mailing List","Third Party Advisory"],"title":"openSUSE-SU-2013:1957-1: moderate: update for MozillaThunderbird","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html","name":"http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html","refsource":"af854a3a-2127-422b-91ae-364da2661108","tags":["Third Party Advisory"],"title":"Oracle Solaris Bulletin - April 2016","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2013-5615","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2013-5615","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[{"source":"CNA","vendor":"n/a","product":"n/a","version":"affected n/a","platforms":[]}],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2013","cve_id":"5615","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"mozilla","cpe5":"firefox","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"containers":{"adp":[{"providerMetadata":{"dateUpdated":"2024-08-06T17:15:21.503Z","orgId":"af854a3a-2127-422b-91ae-364da2661108","shortName":"CVE"},"references":[{"name":"openSUSE-SU-2013:1958","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00120.html"},{"name":"SUSE-SU-2013:1919","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00010.html"},{"name":"openSUSE-SU-2013:1957","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00119.html"},{"name":"FEDORA-2013-23127","tags":["vendor-advisory","x_refsource_FEDORA","x_transferred"],"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/123437.html"},{"name":"FEDORA-2013-23519","tags":["vendor-advisory","x_refsource_FEDORA","x_transferred"],"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124257.html"},{"name":"1029470","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id/1029470"},{"name":"openSUSE-SU-2013:1917","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00086.html"},{"name":"openSUSE-SU-2013:1959","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00121.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.mozilla.org/security/announce/2013/mfsa2013-115.html"},{"name":"GLSA-201504-01","tags":["vendor-advisory","x_refsource_GENTOO","x_transferred"],"url":"https://security.gentoo.org/glsa/201504-01"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html"},{"name":"openSUSE-SU-2013:1916","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00085.html"},{"name":"openSUSE-SU-2014:0008","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-updates/2014-01/msg00002.html"},{"name":"1029476","tags":["vdb-entry","x_refsource_SECTRACK","x_transferred"],"url":"http://www.securitytracker.com/id/1029476"},{"name":"openSUSE-SU-2013:1918","tags":["vendor-advisory","x_refsource_SUSE","x_transferred"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00087.html"},{"name":"FEDORA-2013-23291","tags":["vendor-advisory","x_refsource_FEDORA","x_transferred"],"url":"http://lists.fedoraproject.org/pipermail/package-announce/2014-January/125470.html"},{"tags":["x_refsource_CONFIRM","x_transferred"],"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=929261"},{"name":"USN-2052-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/USN-2052-1"},{"name":"USN-2053-1","tags":["vendor-advisory","x_refsource_UBUNTU","x_transferred"],"url":"http://www.ubuntu.com/usn/USN-2053-1"},{"name":"FEDORA-2013-23295","tags":["vendor-advisory","x_refsource_FEDORA","x_transferred"],"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124108.html"}],"title":"CVE Program Container"}],"cna":{"affected":[{"product":"n/a","vendor":"n/a","versions":[{"status":"affected","version":"n/a"}]}],"datePublic":"2013-12-10T00:00:00.000Z","descriptions":[{"lang":"en","value":"The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does not properly enforce certain typeset restrictions on the generation of GetElementIC typed array stubs, which has unspecified impact and remote attack vectors."}],"problemTypes":[{"descriptions":[{"description":"n/a","lang":"en","type":"text"}]}],"providerMetadata":{"dateUpdated":"2016-12-20T16:57:01.000Z","orgId":"f16b083a-5664-49f3-a51e-8d479e5ed7fe","shortName":"mozilla"},"references":[{"name":"openSUSE-SU-2013:1958","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00120.html"},{"name":"SUSE-SU-2013:1919","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00010.html"},{"name":"openSUSE-SU-2013:1957","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00119.html"},{"name":"FEDORA-2013-23127","tags":["vendor-advisory","x_refsource_FEDORA"],"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/123437.html"},{"name":"FEDORA-2013-23519","tags":["vendor-advisory","x_refsource_FEDORA"],"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124257.html"},{"name":"1029470","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id/1029470"},{"name":"openSUSE-SU-2013:1917","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00086.html"},{"name":"openSUSE-SU-2013:1959","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00121.html"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.mozilla.org/security/announce/2013/mfsa2013-115.html"},{"name":"GLSA-201504-01","tags":["vendor-advisory","x_refsource_GENTOO"],"url":"https://security.gentoo.org/glsa/201504-01"},{"tags":["x_refsource_CONFIRM"],"url":"http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html"},{"name":"openSUSE-SU-2013:1916","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00085.html"},{"name":"openSUSE-SU-2014:0008","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-updates/2014-01/msg00002.html"},{"name":"1029476","tags":["vdb-entry","x_refsource_SECTRACK"],"url":"http://www.securitytracker.com/id/1029476"},{"name":"openSUSE-SU-2013:1918","tags":["vendor-advisory","x_refsource_SUSE"],"url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00087.html"},{"name":"FEDORA-2013-23291","tags":["vendor-advisory","x_refsource_FEDORA"],"url":"http://lists.fedoraproject.org/pipermail/package-announce/2014-January/125470.html"},{"tags":["x_refsource_CONFIRM"],"url":"https://bugzilla.mozilla.org/show_bug.cgi?id=929261"},{"name":"USN-2052-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/USN-2052-1"},{"name":"USN-2053-1","tags":["vendor-advisory","x_refsource_UBUNTU"],"url":"http://www.ubuntu.com/usn/USN-2053-1"},{"name":"FEDORA-2013-23295","tags":["vendor-advisory","x_refsource_FEDORA"],"url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124108.html"}],"x_legacyV4Record":{"CVE_data_meta":{"ASSIGNER":"security@mozilla.org","ID":"CVE-2013-5615","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"product":{"product_data":[{"product_name":"n/a","version":{"version_data":[{"version_value":"n/a"}]}}]},"vendor_name":"n/a"}]}},"data_format":"MITRE","data_type":"CVE","data_version":"4.0","description":{"description_data":[{"lang":"eng","value":"The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does not properly enforce certain typeset restrictions on the generation of GetElementIC typed array stubs, which has unspecified impact and remote attack vectors."}]},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"n/a"}]}]},"references":{"reference_data":[{"name":"openSUSE-SU-2013:1958","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00120.html"},{"name":"SUSE-SU-2013:1919","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-security-announce/2013-12/msg00010.html"},{"name":"openSUSE-SU-2013:1957","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00119.html"},{"name":"FEDORA-2013-23127","refsource":"FEDORA","url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/123437.html"},{"name":"FEDORA-2013-23519","refsource":"FEDORA","url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124257.html"},{"name":"1029470","refsource":"SECTRACK","url":"http://www.securitytracker.com/id/1029470"},{"name":"openSUSE-SU-2013:1917","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00086.html"},{"name":"openSUSE-SU-2013:1959","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00121.html"},{"name":"http://www.mozilla.org/security/announce/2013/mfsa2013-115.html","refsource":"CONFIRM","url":"http://www.mozilla.org/security/announce/2013/mfsa2013-115.html"},{"name":"GLSA-201504-01","refsource":"GENTOO","url":"https://security.gentoo.org/glsa/201504-01"},{"name":"http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html","refsource":"CONFIRM","url":"http://www.oracle.com/technetwork/topics/security/bulletinapr2016-2952098.html"},{"name":"openSUSE-SU-2013:1916","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00085.html"},{"name":"openSUSE-SU-2014:0008","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-updates/2014-01/msg00002.html"},{"name":"1029476","refsource":"SECTRACK","url":"http://www.securitytracker.com/id/1029476"},{"name":"openSUSE-SU-2013:1918","refsource":"SUSE","url":"http://lists.opensuse.org/opensuse-updates/2013-12/msg00087.html"},{"name":"FEDORA-2013-23291","refsource":"FEDORA","url":"http://lists.fedoraproject.org/pipermail/package-announce/2014-January/125470.html"},{"name":"https://bugzilla.mozilla.org/show_bug.cgi?id=929261","refsource":"CONFIRM","url":"https://bugzilla.mozilla.org/show_bug.cgi?id=929261"},{"name":"USN-2052-1","refsource":"UBUNTU","url":"http://www.ubuntu.com/usn/USN-2052-1"},{"name":"USN-2053-1","refsource":"UBUNTU","url":"http://www.ubuntu.com/usn/USN-2053-1"},{"name":"FEDORA-2013-23295","refsource":"FEDORA","url":"http://lists.fedoraproject.org/pipermail/package-announce/2013-December/124108.html"}]}}}},"cveMetadata":{"assignerOrgId":"f16b083a-5664-49f3-a51e-8d479e5ed7fe","assignerShortName":"mozilla","cveId":"CVE-2013-5615","datePublished":"2013-12-11T15:00:00.000Z","dateReserved":"2013-08-26T00:00:00.000Z","dateUpdated":"2024-08-06T17:15:21.503Z","state":"PUBLISHED"},"dataType":"CVE_RECORD","dataVersion":"5.1"},"nvd":{"publishedDate":"2013-12-11 15:55:12","lastModifiedDate":"2026-04-29 01:13:23","problem_types":["NVD-CWE-noinfo","n/a"],"metrics":{"cvssMetricV31":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"3.1","vectorString":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H","baseScore":9.8,"baseSeverity":"CRITICAL","attackVector":"NETWORK","attackComplexity":"LOW","privilegesRequired":"NONE","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH"},"exploitabilityScore":3.9,"impactScore":5.9}],"cvssMetricV2":[{"source":"nvd@nist.gov","type":"Primary","cvssData":{"version":"2.0","vectorString":"AV:N/AC:L/Au:N/C:P/I:P/A:P","baseScore":7.5,"accessVector":"NETWORK","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL"},"baseSeverity":"HIGH","exploitabilityScore":10,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}]},"configurations":[{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*","versionEndExcluding":"26.0","matchCriteriaId":"50A3A702-C2B1-4311-9EBC-D62079E3DCD5"},{"vulnerable":true,"criteria":"cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*","versionStartIncluding":"24.0","versionEndExcluding":"24.2","matchCriteriaId":"E21DDED1-A30C-43AE-B589-E93FEEF13F40"},{"vulnerable":true,"criteria":"cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:*","versionEndExcluding":"2.23","matchCriteriaId":"D337932C-EF9D-4511-87DB-54262C6635D9"},{"vulnerable":true,"criteria":"cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*","versionEndExcluding":"24.2","matchCriteriaId":"7BD42C60-4027-4EDE-A61B-84C80154A5C3"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:12.04:*:*:*:esm:*:*:*","matchCriteriaId":"8D305F7A-D159-4716-AB26-5E38BB5CD991"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:12.10:*:*:*:*:*:*:*","matchCriteriaId":"E2076871-2E80-4605-A470-A41C1A8EC7EE"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:13.04:*:*:*:*:*:*:*","matchCriteriaId":"EFAA48D9-BEB4-4E49-AD50-325C262D46D9"},{"vulnerable":true,"criteria":"cpe:2.3:o:canonical:ubuntu_linux:13.10:*:*:*:*:*:*:*","matchCriteriaId":"7F61F047-129C-41A6-8A27-FFCBB8563E91"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:a:suse:suse_linux_enterprise_software_development_kit:11.0:sp3:*:*:*:*:*:*","matchCriteriaId":"C3407560-6D54-4B1B-9977-AD4F6EB5D6BB"},{"vulnerable":true,"criteria":"cpe:2.3:o:opensuse:opensuse:12.2:*:*:*:*:*:*:*","matchCriteriaId":"D806A17E-B8F9-466D-807D-3F1E77603DC8"},{"vulnerable":true,"criteria":"cpe:2.3:o:opensuse:opensuse:12.3:*:*:*:*:*:*:*","matchCriteriaId":"DFBF430B-0832-44B0-AA0E-BA9E467F7668"},{"vulnerable":true,"criteria":"cpe:2.3:o:opensuse:opensuse:13.1:*:*:*:*:*:*:*","matchCriteriaId":"A10BC294-9196-425F-9FB0-B1625465B47F"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux_enterprise_desktop:11:sp3:*:*:*:*:*:*","matchCriteriaId":"F4BC592E-17CC-4DD4-8B2C-CFD99383649C"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux_enterprise_server:11:sp3:*:*:*:-:*:*","matchCriteriaId":"B2866FAF-4340-4EA7-9009-6594ADA27AF9"},{"vulnerable":true,"criteria":"cpe:2.3:o:suse:suse_linux_enterprise_server:11:sp3:*:*:*:vmware:*:*","matchCriteriaId":"0EA03350-8702-43D5-8605-5FB765A3F60B"}]}]},{"nodes":[{"operator":"OR","negate":false,"cpeMatch":[{"vulnerable":true,"criteria":"cpe:2.3:o:fedoraproject:fedora:18:*:*:*:*:*:*:*","matchCriteriaId":"E14271AE-1309-48F3-B9C6-D7DEEC488279"},{"vulnerable":true,"criteria":"cpe:2.3:o:fedoraproject:fedora:19:*:*:*:*:*:*:*","matchCriteriaId":"5991814D-CA77-4C25-90D2-DB542B17E0AD"},{"vulnerable":true,"criteria":"cpe:2.3:o:fedoraproject:fedora:20:*:*:*:*:*:*:*","matchCriteriaId":"FF47C9F0-D8DA-4B55-89EB-9B2C9383ADB9"}]}]}]},"legacy_mitre":{"record":{"CveYear":"2013","CveId":"5615","Ordinal":"1","Title":"CVE-2013-5615","CVE":"CVE-2013-5615","Year":"2013"},"notes":[{"CveYear":"2013","CveId":"5615","Ordinal":"1","NoteData":"The JavaScript implementation in Mozilla Firefox before 26.0, Firefox ESR 24.x before 24.2, Thunderbird before 24.2, and SeaMonkey before 2.23 does not properly enforce certain typeset restrictions on the generation of GetElementIC typed array stubs, which has unspecified impact and remote attack vectors.","Type":"Description","Title":"CVE-2013-5615"},{"CveYear":"2013","CveId":"5615","Ordinal":"2","NoteData":"2013-12-11","Type":"Other","Title":"Published"},{"CveYear":"2013","CveId":"5615","Ordinal":"3","NoteData":"2016-12-20","Type":"Other","Title":"Modified"}]}}}