[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248392

 
 

909

 
 

195452

 
 

282

Paid content will be excluded from the download.


Download | Alert*
CVE
view JSON

CVE-2011-3660Date: (C)2011-12-20   (M)2024-03-27


Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors that trigger a compartment mismatch associated with the nsDOMMessageEvent::GetData function, and unknown other vectors.

CVSS Score and Metrics +CVSS Score and Metrics -

CVSS V2 Severity:
CVSS Score : 10.0
Exploit Score: 10.0
Impact Score: 10.0
 
CVSS V2 Metrics:
Access Vector: NETWORK
Access Complexity: LOW
Authentication: NONE
Confidentiality: COMPLETE
Integrity: COMPLETE
Availability: COMPLETE
  
Reference:
SECTRACK-1026445
SECTRACK-1026446
SECTRACK-1026447
SECUNIA-47302
SECUNIA-47334
SECUNIA-49055
OSVDB-77952
MDVSA-2011:192
firefox-safety-bugs-ce(71908)
http://www.mozilla.org/security/announce/2011/mfsa2011-53.html
https://bugzilla.mozilla.org/show_bug.cgi?id=562442
https://bugzilla.mozilla.org/show_bug.cgi?id=679494
https://bugzilla.mozilla.org/show_bug.cgi?id=679986
https://bugzilla.mozilla.org/show_bug.cgi?id=680687
https://bugzilla.mozilla.org/show_bug.cgi?id=682252
https://bugzilla.mozilla.org/show_bug.cgi?id=685186
https://bugzilla.mozilla.org/show_bug.cgi?id=685321
https://bugzilla.mozilla.org/show_bug.cgi?id=686107
https://bugzilla.mozilla.org/show_bug.cgi?id=688364
https://bugzilla.mozilla.org/show_bug.cgi?id=688974
https://bugzilla.mozilla.org/show_bug.cgi?id=689892
https://bugzilla.mozilla.org/show_bug.cgi?id=690376
https://bugzilla.mozilla.org/show_bug.cgi?id=691746
https://bugzilla.mozilla.org/show_bug.cgi?id=691873
https://bugzilla.mozilla.org/show_bug.cgi?id=693143
https://bugzilla.mozilla.org/show_bug.cgi?id=693144
https://bugzilla.mozilla.org/show_bug.cgi?id=694200
https://bugzilla.mozilla.org/show_bug.cgi?id=696579
https://bugzilla.mozilla.org/show_bug.cgi?id=697255
https://bugzilla.mozilla.org/show_bug.cgi?id=700512
https://bugzilla.mozilla.org/show_bug.cgi?id=701248
https://bugzilla.mozilla.org/show_bug.cgi?id=701637
https://bugzilla.mozilla.org/show_bug.cgi?id=706249
openSUSE-SU-2012:0007
openSUSE-SU-2012:0039
oval:org.mitre.oval:def:14226

CPE    93
cpe:/a:mozilla:firefox:7.0.1
cpe:/a:mozilla:seamonkey:1.5.0.8
cpe:/a:mozilla:seamonkey:1.5.0.9
cpe:/a:mozilla:seamonkey:1.0.1
...
OVAL    8
oval:org.secpod.oval:def:700729
oval:org.secpod.oval:def:400429
oval:org.secpod.oval:def:700724
oval:org.secpod.oval:def:400371
...

© SecPod Technologies