Описание
Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manage reference counts for option elements in a XUL tree optgroup, which might allow remote attackers to execute arbitrary code via unspecified vectors that trigger access to deleted elements, related to a "dangling pointer vulnerability."
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | firefox | Not affected | ||
Red Hat Enterprise Linux Extended Update Support 4.8 | seamonkey | Affected | ||
Red Hat Enterprise Linux 3 | seamonkey | Fixed | RHSA-2010:0333 | 30.03.2010 |
Red Hat Enterprise Linux 4 | firefox | Fixed | RHSA-2010:0332 | 30.03.2010 |
Red Hat Enterprise Linux 4 | seamonkey | Fixed | RHSA-2010:0333 | 30.03.2010 |
Red Hat Enterprise Linux 4 | thunderbird | Fixed | RHSA-2010:0544 | 21.07.2010 |
Red Hat Enterprise Linux 5 | firefox | Fixed | RHSA-2010:0332 | 30.03.2010 |
Red Hat Enterprise Linux 5 | xulrunner | Fixed | RHSA-2010:0332 | 30.03.2010 |
Red Hat Enterprise Linux 5 | thunderbird | Fixed | RHSA-2010:0545 | 21.07.2010 |
Показывать по
Дополнительная информация
Статус:
EPSS
6.8 Medium
CVSS2
Связанные уязвимости
Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manage reference counts for option elements in a XUL tree optgroup, which might allow remote attackers to execute arbitrary code via unspecified vectors that trigger access to deleted elements, related to a "dangling pointer vulnerability."
Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manage reference counts for option elements in a XUL tree optgroup, which might allow remote attackers to execute arbitrary code via unspecified vectors that trigger access to deleted elements, related to a "dangling pointer vulnerability."
Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3. ...
Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manage reference counts for option elements in a XUL tree optgroup, which might allow remote attackers to execute arbitrary code via unspecified vectors that trigger access to deleted elements, related to a "dangling pointer vulnerability."
EPSS
6.8 Medium
CVSS2