Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execute arbitrary code via vectors related to OBJECT's mObserverList.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade firefoxUpgrade xulrunner-develUpgrade xulrunner | Dec 1, 2016 | May 7, 2011 |
| Gentoo Linux | — | Upgrade net-libs/xulrunner.Upgrade www-client/mozilla-firefox-bin.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade www-client/icecat.Upgrade www-client/firefox-bin.Upgrade www-client/seamonkey-bin.Upgrade net-libs/xulrunner-bin.Upgrade mail-client/thunderbird-bin.Upgrade mail-client/mozilla-thunderbird.Upgrade mail-client/thunderbird.Upgrade www-client/firefox.Upgrade www-client/seamonkey.Upgrade www-client/mozilla-firefox.Upgrade dev-libs/nss. | Oct 30, 2017 | May 7, 2011 |
| Mfsa2011 13 | — | Upgrade to Mozilla Firefox version 3.5.19Upgrade to Mozilla Firefox version 3.6.17 | Jun 14, 2012 | May 7, 2011 |
| Mozilla Seamonkey | — | Upgrade to Mozilla SeaMonkey version 2.0.14 | Feb 3, 2012 | May 7, 2011 |
| Oracle_linux | — | Upgrade firefoxUpgrade xulrunnerUpgrade xulrunner-devel | Oct 16, 2024 | May 7, 2011 |
| Suse | — | Upgrade mozilla-xulrunner192-32bitUpgrade mozilla-xulrunner192-develUpgrade mozilla-xulrunner192Upgrade mozilla-xulrunner192-gnomeUpgrade mozilla-xulrunner192-translationsUpgrade MozillaFirefox-develUpgrade MozillaFirefoxUpgrade MozillaFirefox-translationsUpgrade mozilla-xulrunner192-gnome-32bitUpgrade mozilla-xulrunner192-x86Upgrade mozilla-xulrunner192-translations-32bit | Feb 17, 2015 | Jun 28, 2013 |
| Ubuntu | — | Upgrade xulrunner-1.9.2Upgrade xulrunner-1.9.1Upgrade thunderbirdUpgrade firefox | Nov 8, 2024 | May 7, 2011 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub