Double free vulnerability in the getRawDER function for nsIX509Cert in Firefox allows remote attackers to cause a denial of service (hang) and possibly execute arbitrary code via certain Javascript code.
rhn.redhat.com/errata/RHSA-2006-0609.html
secunia.com/advisories/21269
secunia.com/advisories/21270
secunia.com/advisories/21336
secunia.com/advisories/21532
secunia.com/advisories/21631
secunia.com/advisories/22247
secunia.com/advisories/22299
secunia.com/advisories/22342
secunia.com/advisories/22849
www.debian.org/security/2006/dsa-1192
www.debian.org/security/2006/dsa-1210
www.mandriva.com/security/advisories?name=MDKSA-2006:143
www.mandriva.com/security/advisories?name=MDKSA-2006:145
www.redhat.com/support/errata/RHSA-2006-0578.html
www.redhat.com/support/errata/RHSA-2006-0594.html
www.redhat.com/support/errata/RHSA-2006-0610.html
www.redhat.com/support/errata/RHSA-2006-0611.html
www.ubuntu.com/usn/usn-361-1
www.us.debian.org/security/2006/dsa-1191
bugzilla.mozilla.org/show_bug.cgi?id=321598
oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11065
usn.ubuntu.com/296-1/