Mozilla Firefox 3 before 3.0.1 on Mac OS X allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a crafted GIF file that triggers a free of an uninitialized pointer.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Mfsa2008 36 | — | Upgrade to Mozilla Firefox version 3.0.1 | Jun 14, 2012 | Jul 18, 2008 |
| Suse | — | Upgrade mozilla-xulrunner190-translations-32bitUpgrade mozilla-xulrunner190-gnomevfs-64bitUpgrade mozilla-xulrunner190-64bitUpgrade mozilla-xulrunner190-translations-64bitUpgrade mozilla-xulrunner190-develUpgrade mozilla-xulrunner190-32bitUpgrade mozilla-xulrunner190Upgrade mozilla-xulrunner190-gnomevfs-32bitUpgrade mozilla-xulrunner190-translationsUpgrade mozilla-xulrunner190-gnomevfsUpgrade MozillaFirefoxUpgrade MozillaFirefox-translations | Dec 12, 2013 | Jul 18, 2008 |
| Ubuntu | — | Upgrade xulrunner-1.9Upgrade firefox-3.0 | Nov 8, 2024 | Jul 18, 2008 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub