Описание
Integer overflow in the nsGenericDOMDataNode::SetTextInternal function in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a DOM node with a long text value that triggers a heap-based buffer overflow.
Затронутые пакеты
Платформа | Пакет | Состояние | Рекомендация | Релиз |
---|---|---|---|---|
Red Hat Enterprise Linux 6 | firefox | Not affected | ||
Red Hat Enterprise Linux 4 | firefox | Fixed | RHSA-2010:0500 | 22.06.2010 |
Red Hat Enterprise Linux 5 | devhelp | Fixed | RHSA-2010:0501 | 22.06.2010 |
Red Hat Enterprise Linux 5 | esc | Fixed | RHSA-2010:0501 | 22.06.2010 |
Red Hat Enterprise Linux 5 | firefox | Fixed | RHSA-2010:0501 | 22.06.2010 |
Red Hat Enterprise Linux 5 | gnome-python2-extras | Fixed | RHSA-2010:0501 | 22.06.2010 |
Red Hat Enterprise Linux 5 | totem | Fixed | RHSA-2010:0501 | 22.06.2010 |
Red Hat Enterprise Linux 5 | xulrunner | Fixed | RHSA-2010:0501 | 22.06.2010 |
Red Hat Enterprise Linux 5 | yelp | Fixed | RHSA-2010:0501 | 22.06.2010 |
Показывать по
Дополнительная информация
Статус:
6.8 Medium
CVSS2
Связанные уязвимости
Integer overflow in the nsGenericDOMDataNode::SetTextInternal function in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a DOM node with a long text value that triggers a heap-based buffer overflow.
Integer overflow in the nsGenericDOMDataNode::SetTextInternal function in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a DOM node with a long text value that triggers a heap-based buffer overflow.
Integer overflow in the nsGenericDOMDataNode::SetTextInternal function ...
Integer overflow in the nsGenericDOMDataNode::SetTextInternal function in Mozilla Firefox 3.5.x before 3.5.10 and 3.6.x before 3.6.4, Thunderbird before 3.0.5, and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a DOM node with a long text value that triggers a heap-based buffer overflow.
ELSA-2010-0501: firefox security, bug fix, and enhancement update (CRITICAL)
6.8 Medium
CVSS2