PT-2010-3609 · Mozilla · Firefox

Published

2010-05-20

·

Updated

2018-10-10

·

CVE-2010-1988

CVSS v2.0

10

High

VectorAV:N/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Mozilla Firefox version 3.6.3
Description The issue allows remote attackers to cause a denial of service, resulting in a NULL pointer dereference and application crash, or possibly execute arbitrary code. This is achieved through JavaScript code that performs certain string concatenation and substring operations.
Recommendations For Mozilla Firefox version 3.6.3, update to a newer version to mitigate the risk.

Exploit

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2010-1988

Affected Products

Firefox