Back

MEDIUM

Firefox: DoS (resource consumption) via JavaScript source with loop of invalid (1) news:// or (2) nntp:// URIs

Published Jun 1, 2010

Description

Mozilla Firefox 3.0.19, 3.5.x, and 3.6.x allows remote attackers to cause a denial of service (resource consumption) via JavaScript code containing an infinite loop that creates IFRAME elements for invalid (1) news:// or (2) nntp:// URIs.

Affected products

Remediation

Red Hat statement

The Red Hat Security Response Team does not consider a user assisted denial of service (and potential crash) of end user application, such a Firefox, to be a security issue.

Metrics

Weaknesses (1)

References (7)

Change history (0)

No recorded changes yet.

Sources
CVE.org / MITRE
Status PUBLISHED
Assigner mitre
Published Jun 1, 2010
Updated Aug 7, 2024
Reserved Jun 1, 2010
NVD
Status Modified
Modified Jun 16, 2026
Red Hat
Severity n/a
Public date May 27, 2010