AV AC PR UI S C I A CVSS EPSS %ile KEV N L N R U H N N 6.5 .0670 93.7 YES
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Feb 13 Reserved by mozilla May 16 Published (CNA: mozilla) Mar 3 Added to CISA KEV, remediation due 2022-03-24
Reference page — cumulative record through Monday, October 5, 2026 UTC. Reference pages update as the archive grows; only dated daily editions are immutable pages of record.
AV AC PR UI S C I A CVSS EPSS %ile KEV N L N R U H N N 6.5 .0670 93.7 YES
AFFECTED Product Versions Fixed n/a n/a – —
TIMELINE Feb 13 Reserved by mozilla May 16 Published (CNA: mozilla) Mar 3 Added to CISA KEV, remediation due 2022-03-24
Mozilla Firefox before 21.0, Firefox ESR 17.x before 17.0.6, Thunderbird before 17.0.6, and Thunderbird ESR 17.x before 17.0.6 do not properly initialize data structures for the nsDOMSVGZoomEvent::mPreviousScale and nsDOMSVGZoomEvent::mNewScale functions, which allows remote attackers to obtain sensitive information from process memory via a crafted web site.
| Date | Event | Detail |
|---|---|---|
| February 13, 2013 | Reserved | Reserved by mozilla |
| May 16, 2013 | Published | Published (CNA: mozilla) |
| March 3, 2022 | KEV ADDED | Added to CISA KEV, remediation due 2022-03-24 |
| Vendor | Product / Package | Ecosystem | Version introduced | Fixed |
|---|---|---|---|---|
| n/a | n/a | — | n/a | — |
Authoritative record: CVE-2013-1675 at cve.org
Weaknesses: CWE-665
This is a reference page, not a dated page of record. It assembles the complete lifecycle of CVE-2013-1675 from the CVE Program record, NVD enrichment, the CISA KEV catalog, EPSS, and OSV advisories. The box score's numbers (CVSS, EPSS, KEV status) are current as of Monday, October 5, 2026 UTC and are re-derived as the archive grows; only dated daily editions are immutable pages of record. The authoritative source for this identifier is cve.org.