PT-2008-4372 · Mozilla · Firefox

Published

2008-07-18

·

Updated

2024-02-09

·

CVE-2008-2934

CVSS v2.0

6.8

Medium

VectorAV:N/AC:M/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions 3.0 through 3.0
Description The issue allows remote attackers to cause a denial of service, resulting in an application crash, or possibly execute arbitrary code via a crafted GIF file. This is triggered by a free of an uninitialized pointer.
Recommendations For Mozilla Firefox versions 3.0 through 3.0, update to version 3.0.1 or later to resolve the issue.

Exploit

Fix

Use of Uninitialized Resource

Weakness Enumeration

Related Identifiers

CVE-2008-2934

Affected Products

Firefox