TROYANOSYVIRUS
Voltar para CVEs

CVE-2010-3183

N/A

Descricao

The LookupGetterOrSetter function in js3250.dll in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 does not properly support window.__lookupGetter__ function calls that lack arguments, which allows remote attackers to execute arbitrary code or cause a denial of service (incorrect pointer dereference and application crash) via vectors involving a "dangling pointer" and the JS_ValueToId function.

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado10/21/2010
Ultima modificacao4/29/2026
Fontenvd
Avistamentos honeypot0

Produtos afetados

mozilla:firefoxmozilla:seamonkeymozilla:thunderbird

Fraquezas (CWE)

CWE-119

Referencias

http://secunia.com/advisories/42867(af854a3a-2127-422b-91ae-364da2661108)
http://support.avaya.com/css/P8/documents/100120156(af854a3a-2127-422b-91ae-364da2661108)
http://www.debian.org/security/2010/dsa-2124(af854a3a-2127-422b-91ae-364da2661108)
http://www.redhat.com/support/errata/RHSA-2010-0782.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.redhat.com/support/errata/RHSA-2010-0861.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.redhat.com/support/errata/RHSA-2010-0896.html(af854a3a-2127-422b-91ae-364da2661108)
http://www.securityfocus.com/bid/44249(af854a3a-2127-422b-91ae-364da2661108)
http://www.ubuntu.com/usn/USN-997-1(af854a3a-2127-422b-91ae-364da2661108)
http://www.ubuntu.com/usn/USN-998-1(af854a3a-2127-422b-91ae-364da2661108)
http://www.vupen.com/english/advisories/2011/0061(af854a3a-2127-422b-91ae-364da2661108)
http://www.zerodayinitiative.com/advisories/ZDI-10-219/(af854a3a-2127-422b-91ae-364da2661108)
https://bugzilla.mozilla.org/show_bug.cgi?id=598669(af854a3a-2127-422b-91ae-364da2661108)

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.