Back

HIGH

firefox: arbitrary code execution via memory corruption

Published Mar 25, 2010

Description

Mozilla Firefox 3.6.x before 3.6.3 does not properly manage the scopes of DOM nodes that are moved from one document to another, which allows remote attackers to conduct use-after-free attacks and execute arbitrary code via unspecified vectors involving improper interaction with garbage collection, as demonstrated by Nils during a Pwn2Own competition at CanSecWest 2010.

Affected products

Remediation

No remediation recorded yet.

Metrics

Weaknesses (1)

References (28)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Mar 25, 2010
Updated Aug 7, 2024
Reserved Mar 25, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity Critical
Public date Jun 22, 2010