The garbage-collection implementation in Mozilla Firefox before 3.0.11, Thunderbird before 2.0.0.22, and SeaMonkey before 1.1.17 sets an element's owner document to null in unspecified circumstances, which allows remote attackers to execute arbitrary JavaScript with chrome privileges via a crafted event handler, related to an incorrect context for this event handler.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade seamonkey-dom-inspectorUpgrade xulrunner-develUpgrade firefoxUpgrade seamonkeyUpgrade xulrunner-devel-unstableUpgrade xulrunnerUpgrade thunderbirdUpgrade seamonkey-nss-develUpgrade seamonkey-develUpgrade seamonkey-chatUpgrade seamonkey-mailUpgrade seamonkey-js-debuggerUpgrade seamonkey-nspr-develUpgrade seamonkey-nsprUpgrade seamonkey-nss | Dec 1, 2016 | Jun 12, 2009 |
| Freebsd | — | Upgrade linux-firefoxUpgrade seamonkeyUpgrade firefoxUpgrade linux-firefox-develUpgrade linux-seamonkeyUpgrade thunderbirdUpgrade linux-thunderbird | Dec 10, 2025 | Jun 12, 2009 |
| Gentoo Linux | — | Upgrade www-client/mozilla-firefox-bin.Upgrade net-libs/xulrunner-bin.Upgrade mail-client/thunderbird-bin.Upgrade mail-client/mozilla-thunderbird.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade www-client/firefox.Upgrade www-client/firefox-bin.Upgrade www-client/seamonkey-bin.Upgrade www-client/seamonkey.Upgrade www-client/icecat.Upgrade dev-libs/nss.Upgrade net-libs/xulrunner.Upgrade www-client/mozilla-firefox.Upgrade mail-client/thunderbird. | Oct 30, 2017 | Jun 12, 2009 |
| Mfsa2009 29 | — | Upgrade to Mozilla Firefox version 3.0.11 | Jun 14, 2012 | Jun 12, 2009 |
| Mozilla Seamonkey | — | Upgrade to Mozilla SeaMonkey version 1.1.17 | Feb 3, 2012 | Jun 12, 2009 |
| Mozilla Thunderbird | — | Upgrade to Mozilla Thunderbird version 2.0.0.22 | Feb 22, 2012 | Jun 12, 2009 |
| Oracle_linux | — | Upgrade firefoxUpgrade xulrunner-devel-unstableUpgrade xulrunnerUpgrade xulrunner-devel | Oct 16, 2024 | Jun 12, 2009 |
| Suse | — | Upgrade gconf2-32bitUpgrade libfreebl3-x86Upgrade mozilla-xulrunner190-32bitUpgrade mozilla-xulrunner192Upgrade mozilla-xulrunner191-32bitUpgrade orbit2-x86Upgrade MozillaFirefox-branding-SLEDUpgrade libidl-x86Upgrade mozilla-nssUpgrade libfreebl3Upgrade mozilla-xulrunner192-x86Upgrade libidl-32bitUpgrade mozilla-nsprUpgrade orbit2Upgrade mozilla-xulrunner191Upgrade mozilla-xulrunner192-gnomeUpgrade gconf2-x86Upgrade mozilla-nss-32bitUpgrade mozilla-xulrunner190-x86Upgrade mozilla-xulrunner190-translationsUpgrade mozilla-nspr-32bitUpgrade mozilla-nss-x86Upgrade libfreebl3-32bitUpgrade mozilla-nss-toolsUpgrade mozilla-xulrunner191-gnomevfsUpgrade libidlUpgrade MozillaFirefox-translationsUpgrade mozilla-xulrunner190-gnomevfsUpgrade mozilla-xulrunner192-translationsUpgrade mozilla-xulrunner192-32bitUpgrade mozilla-xulrunner191-x86Upgrade mozilla-nspr-x86Upgrade mozilla-xulrunner191-translationsUpgrade mozilla-xulrunner190Upgrade MozillaFirefoxUpgrade gconf2Upgrade orbit2-32bit | Feb 17, 2015 | Jul 9, 2013 |
| Ubuntu | — | Upgrade xulrunner-1.9Upgrade firefox-3.0Upgrade thunderbirdUpgrade abrowser | Nov 8, 2024 | Jun 12, 2009 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub