PT-2010-3609 · Mozilla · Firefox
Published
2010-05-20
·
Updated
2018-10-10
·
CVE-2010-1988
CVSS v2.0
10
High
| Vector | AV:N/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions
Mozilla Firefox version 3.6.3
Description
The issue allows remote attackers to cause a denial of service, resulting in a NULL pointer dereference and application crash, or possibly execute arbitrary code. This is achieved through JavaScript code that performs certain string concatenation and substring operations.
Recommendations
For Mozilla Firefox version 3.6.3, update to a newer version to mitigate the risk.
Exploit
Fix
Found an issue in the description? Have something to add? Feel free to write us 👾
Related Identifiers
Affected Products
Firefox