PT-2010-2837 · Mozilla+2 · Firefox+2
Nils
·
Publicado
2010-03-25
·
Atualizado
2024-12-12
·
CVE-2010-1121
CVSS v2.0
10
Alta
| Vetor | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Mozilla Firefox versions 3.6.x through 3.6.2
Description
The issue allows remote attackers to conduct use-after-free attacks and execute arbitrary code via unspecified vectors involving improper interaction with garbage collection. This is due to the improper management of the scopes of DOM nodes that are moved from one document to another.
Recommendations
For Mozilla Firefox versions 3.6.x through 3.6.2, update to version 3.6.3 or later to resolve the issue.
Exploit
Correção
Code Injection
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Firefox
Red Hat
Suse