Integer overflow in the Array.reduceRight method in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allows remote attackers to execute arbitrary code via vectors involving a long JavaScript Array object.
References
Configurations
Configuration 1 (hide)
|
Configuration 2 (hide)
|
Configuration 3 (hide)
|
Configuration 4 (hide)
|
History
21 Nov 2024, 01:28
Type | Values Removed | Values Added |
---|---|---|
References | () http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00001.html - | |
References | () http://secunia.com/advisories/45002Â - | |
References | () http://securityreason.com/securityalert/8472Â - | |
References | () http://support.avaya.com/css/P8/documents/100144854Â - | |
References | () http://support.avaya.com/css/P8/documents/100145333Â - | |
References | () http://www.debian.org/security/2011/dsa-2268Â - | |
References | () http://www.debian.org/security/2011/dsa-2269Â - | |
References | () http://www.debian.org/security/2011/dsa-2273Â - | |
References | () http://www.mandriva.com/security/advisories?name=MDVSA-2011:111Â - | |
References | () http://www.mozilla.org/security/announce/2011/mfsa2011-22.html - Vendor Advisory | |
References | () http://www.redhat.com/support/errata/RHSA-2011-0885.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2011-0887.html - | |
References | () http://www.redhat.com/support/errata/RHSA-2011-0888.html - | |
References | () http://www.ubuntu.com/usn/USN-1149-1Â - | |
References | () https://bugzilla.mozilla.org/show_bug.cgi?id=664009Â - | |
References | () https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A13987Â - |
Information
Published : 2011-06-30 16:55
Updated : 2024-11-21 01:28
NVD link : CVE-2011-2371
Mitre link : CVE-2011-2371
CVE.ORG link : CVE-2011-2371
JSON object : View
Products Affected
mozilla
- seamonkey
- thunderbird
- firefox
CWE
CWE-189
Numeric Errors