PT-2010-2837 · Mozilla+2 · Firefox+2

Nils

·

Published

2010-03-25

·

Updated

2024-12-12

·

CVE-2010-1121

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mozilla Firefox versions 3.6.x through 3.6.2
Description The issue allows remote attackers to conduct use-after-free attacks and execute arbitrary code via unspecified vectors involving improper interaction with garbage collection. This is due to the improper management of the scopes of DOM nodes that are moved from one document to another.
Recommendations For Mozilla Firefox versions 3.6.x through 3.6.2, update to version 3.6.3 or later to resolve the issue.

Exploit

Fix

Code Injection

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2010-1121
OPENSUSE-SU-2014_1100-1
OPENSUSE-SU-2024:10071-1
OPENSUSE-SU-2024:10230-1
OPENSUSE-SU-2024:14572-1
RHSA-2010:0500
RHSA-2010:0501
RHSA-2010_0500
RHSA-2010_0501
ZDI-10-063

Affected Products

Firefox
Red Hat
Suse