Lucene search

K
ubuntucveUbuntu.comUB:CVE-2011-3650
HistoryNov 09, 2011 - 12:00 a.m.

CVE-2011-3650

2011-11-0900:00:00
ubuntu.com
ubuntu.com
13

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.011

Percentile

84.3%

Mozilla Firefox before 3.6.24 and 4.x through 7.0 and Thunderbird before
3.1.6 and 5.0 through 7.0 do not properly handle JavaScript files that
contain many functions, which allows user-assisted remote attackers to
cause a denial of service (memory corruption and application crash) or
possibly have unspecified other impact via a crafted file that is accessed
by debugging APIs, as demonstrated by Firebug.

OSVersionArchitecturePackageVersionFilename
ubuntu10.04noarchfirefox< 3.6.24+build2+nobinonly-0ubuntu0.10.04.1UNKNOWN
ubuntu10.10noarchfirefox< 3.6.24+build2+nobinonly-0ubuntu0.10.10.1UNKNOWN
ubuntu11.04noarchfirefox< 8.0+build1-0ubuntu0.11.04.3UNKNOWN
ubuntu11.10noarchfirefox< 8.0+build1-0ubuntu0.11.10.3UNKNOWN
ubuntu10.04noarchthunderbird< 3.1.16+build2+nobinonly-0ubuntu0.10.04.1UNKNOWN
ubuntu10.10noarchthunderbird< 3.1.16+build2+nobinonly-0ubuntu0.10.10.1UNKNOWN
ubuntu11.04noarchthunderbird< 3.1.16+build2+nobinonly-0ubuntu0.11.04.1UNKNOWN
ubuntu11.10noarchthunderbird< 8.0+build1-0ubuntu0.11.10.1UNKNOWN
ubuntu10.04noarchxulrunner-1.9.2< 1.9.2.24+build2+nobinonly-0ubuntu0.10.04.1UNKNOWN
ubuntu10.10noarchxulrunner-1.9.2< 1.9.2.24+build2+nobinonly-0ubuntu0.10.10.1UNKNOWN
Rows per page:
1-10 of 111

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.011

Percentile

84.3%