Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-0055
HistoryMar 02, 2011 - 12:00 a.m.

CVE-2011-0055

2011-03-0200:00:00
ubuntu.com
ubuntu.com
15

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.108

Percentile

95.2%

Use-after-free vulnerability in the JSON.stringify method in js3250.dll in
Mozilla Firefox before 3.5.17 and 3.6.x before 3.6.14, and SeaMonkey before
2.0.12, might allow remote attackers to execute arbitrary code via
unspecified vectors related to the js_HasOwnProperty function and garbage
collection.

OSVersionArchitecturePackageVersionFilename
ubuntu10.04noarchfirefox< 3.6.14+build3+nobinonly-0ubuntu0.10.04.1UNKNOWN
ubuntu10.10noarchfirefox< 3.6.14+build3+nobinonly-0ubuntu0.10.10.1UNKNOWN
ubuntu8.04noarchfirefox-3.0< 3.6.14+build3+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu9.10noarchfirefox-3.5< 3.6.14+build3+nobinonly-0ubuntu0.9.10.1UNKNOWN
ubuntu8.04noarchxulrunner-1.9.2< 1.9.2.14+build3+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu9.10noarchxulrunner-1.9.2< 1.9.2.14+build3+nobinonly-0ubuntu0.9.10.1UNKNOWN
ubuntu10.04noarchxulrunner-1.9.2< 1.9.2.14+build3+nobinonly-0ubuntu0.10.04.1UNKNOWN
ubuntu10.10noarchxulrunner-1.9.2< 1.9.2.14+build3+nobinonly-0ubuntu0.10.10.1UNKNOWN

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.108

Percentile

95.2%