vendor:
Firefox
by:
Mozilla Security Team
7,5
CVSS
HIGH
Memory Corruption
119
CWE
Product Name: Firefox
Affected Version From: 3.6.9
Affected Version To: 3.6.10
Patch Exists: YES
Related CWE: CVE-2010-3765
CPE: Mozilla:Firefox
Metasploit:
https://www.rapid7.com/db/vulnerabilities/gentoo-linux-cve-2010-3765/, https://www.rapid7.com/db/vulnerabilities/freebsd-vid-c223b00d-e272-11df-8e32-000f20797ede/, https://www.rapid7.com/db/vulnerabilities/centos_linux-cve-2010-3765/, https://www.rapid7.com/db/vulnerabilities/mozilla-thunderbird-cve-2010-3765/, https://www.rapid7.com/db/vulnerabilities/mfsa2010-73-cve-2010-3765/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2010-0808/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2010-0809/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2010-0810/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2010-0896/, https://www.rapid7.com/db/vulnerabilities/suse-cve-2010-3765/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2010-0812/, https://www.rapid7.com/db/vulnerabilities/linuxrpm-RHSA-2010-0861/, https://www.rapid7.com/db/vulnerabilities/mozilla-seamonkey-cve-2010-3765/
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows, Linux, Mac
2010
Memory Corruption Vulnerability in Mozilla Firefox
A memory corruption vulnerability exists in Mozilla Firefox when handling certain HTML elements. An attacker can exploit this vulnerability by crafting a malicious HTML page with specially crafted HTML elements that can cause a memory corruption when rendered by the browser. This can lead to arbitrary code execution.
Mitigation:
Upgrade to the latest version of Mozilla Firefox