Race condition in the NPObjWrapper_NewResolve function in modules/plugin/base/src/nsJSNPRuntime.cpp in xul.dll in Mozilla Firefox 3 before 3.0.11 might allow remote attackers to execute arbitrary code via a page transition during Java applet loading, related to a use-after-free vulnerability for memory associated with a destroyed Java object.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2009-06-12T21:07:00

Updated: 2024-08-07T05:27:54.654Z

Reserved: 2009-05-29T00:00:00

Link: CVE-2009-1837

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2009-06-12T21:30:00.360

Modified: 2024-02-02T16:03:54.303

Link: CVE-2009-1837

cve-icon Redhat

Severity : Critical

Publid Date: 2009-06-11T00:00:00Z

Links: CVE-2009-1837 - Bugzilla