Description
Use-after-free vulnerability in the nsTreeSelection implementation in Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.9, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors that trigger a call to the handler for the select event for XUL tree items.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2027-1 | New xulrunner packages fix several vulnerabilities |
EUVD |
EUVD-2010-0206 | Use-after-free vulnerability in the nsTreeSelection implementation in Mozilla Firefox before 3.0.19 and 3.5.x before 3.5.9, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allows remote attackers to execute arbitrary code or cause a denial of service (application crash) via unspecified vectors that trigger a call to the handler for the select event for XUL tree items. |
Ubuntu USN |
USN-920-1 | Firefox 3.0 and Xulrunner vulnerabilities |
Ubuntu USN |
USN-921-1 | Firefox 3.5 and Xulrunner vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T00:37:54.227Z
Reserved: 2010-01-06T00:00:00.000Z
Link: CVE-2010-0175
No data.
Status : Deferred
Published: 2010-04-05T17:30:00.407
Modified: 2025-04-11T00:51:21.963
Link: CVE-2010-0175
OpenCVE Enrichment
No data.
Debian DSA
EUVD
Ubuntu USN