Integer overflow in the decompression functionality in the Web Open Fonts Format (WOFF) decoder in Mozilla Firefox 3.6 before 3.6.2 and 3.7 before 3.7 alpha 3 allows remote attackers to execute arbitrary code via a crafted WOFF file that triggers a buffer overflow, as demonstrated by the vd_ff module in VulnDisco 9.0.
CVSS Details
- CVSS 3.1 Base Score: 8.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Debian | — | Upgrade calibre | Jul 30, 2024 | Mar 19, 2010 |
| Freebsd | — | Upgrade firefox | Dec 10, 2025 | Mar 23, 2010 |
| Gentoo Linux | — | Upgrade www-client/mozilla-firefox.Upgrade mail-client/thunderbird.Upgrade www-client/firefox-bin.Upgrade www-client/firefox.Upgrade dev-libs/nss.Upgrade www-client/seamonkey.Upgrade www-client/seamonkey-bin.Upgrade net-libs/xulrunner.Upgrade mail-client/mozilla-thunderbird.Upgrade www-client/icecat.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade mail-client/thunderbird-bin.Upgrade net-libs/xulrunner-bin.Upgrade www-client/mozilla-firefox-bin. | Oct 30, 2017 | Mar 19, 2010 |
| Mfsa2010 08 | — | Upgrade to Mozilla Firefox version 3.6.2 | Jun 14, 2012 | Mar 19, 2010 |
| Suse | — | Upgrade mozilla-xulrunner192-translations-32bitUpgrade MozillaFirefox-translations-otherUpgrade mozilla-xulrunner192-x86Upgrade mozilla-xulrunner192Upgrade MozillaFirefox-develUpgrade mozilla-xulrunner192-develUpgrade MozillaFirefoxUpgrade mozilla-xulrunner192-translationsUpgrade MozillaFirefox-translationsUpgrade MozillaFirefox-translations-commonUpgrade mozilla-xulrunner192-gnomeUpgrade mozilla-xulrunner192-32bitUpgrade mozilla-xulrunner192-gnome-32bit | Aug 9, 2024 | Jun 28, 2013 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub