CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
COMPLETE
Integrity Impact
COMPLETE
Availability Impact
COMPLETE
AV:N/AC:M/Au:N/C:C/I:C/A:C
AI Score
Confidence
High
EPSS
Percentile
94.3%
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 3.5.x before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Vendor | Product | Version | CPE |
---|---|---|---|
mozilla | firefox | 3.6 | cpe:2.3:a:mozilla:firefox:3.6:*:*:*:*:*:*:* |
mozilla | firefox | 3.6.2 | cpe:2.3:a:mozilla:firefox:3.6.2:*:*:*:*:*:*:* |
mozilla | firefox | 3.6.3 | cpe:2.3:a:mozilla:firefox:3.6.3:*:*:*:*:*:*:* |
mozilla | firefox | 3.6.4 | cpe:2.3:a:mozilla:firefox:3.6.4:*:*:*:*:*:*:* |
mozilla | firefox | 3.6.6 | cpe:2.3:a:mozilla:firefox:3.6.6:*:*:*:*:*:*:* |
mozilla | firefox | 3.6.7 | cpe:2.3:a:mozilla:firefox:3.6.7:*:*:*:*:*:*:* |
mozilla | firefox | 3.6.8 | cpe:2.3:a:mozilla:firefox:3.6.8:*:*:*:*:*:*:* |
mozilla | firefox | 3.6.9 | cpe:2.3:a:mozilla:firefox:3.6.9:*:*:*:*:*:*:* |
mozilla | firefox | 3.6.10 | cpe:2.3:a:mozilla:firefox:3.6.10:*:*:*:*:*:*:* |
mozilla | seamonkey | * | cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:* |
blogs.sun.com/security/entry/multiple_vulnerabilities_in_mozilla_firefox
lists.fedoraproject.org/pipermail/package-announce/2010-October/050077.html
lists.fedoraproject.org/pipermail/package-announce/2010-October/050154.html
secunia.com/advisories/42867
support.avaya.com/css/P8/documents/100114250
support.avaya.com/css/P8/documents/100120156
www.debian.org/security/2010/dsa-2124
www.mandriva.com/security/advisories?name=MDVSA-2010:210
www.mandriva.com/security/advisories?name=MDVSA-2010:211
www.mozilla.org/security/announce/2010/mfsa2010-64.html
www.redhat.com/support/errata/RHSA-2010-0780.html
www.redhat.com/support/errata/RHSA-2010-0781.html
www.redhat.com/support/errata/RHSA-2010-0782.html
www.redhat.com/support/errata/RHSA-2010-0861.html
www.redhat.com/support/errata/RHSA-2010-0896.html
www.securityfocus.com/bid/44243
www.ubuntu.com/usn/USN-997-1
www.ubuntu.com/usn/USN-998-1
www.vupen.com/english/advisories/2011/0061
bugzilla.mozilla.org/show_bug.cgi?id=509075
bugzilla.mozilla.org/show_bug.cgi?id=559344
bugzilla.mozilla.org/show_bug.cgi?id=566141
bugzilla.mozilla.org/show_bug.cgi?id=568073
bugzilla.mozilla.org/show_bug.cgi?id=568303
bugzilla.mozilla.org/show_bug.cgi?id=580151
bugzilla.mozilla.org/show_bug.cgi?id=583957
bugzilla.mozilla.org/show_bug.cgi?id=594760
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12132