Description
Use-after-free vulnerability in the attribute-cloning functionality in the DOM implementation in Mozilla Firefox 3.5.x before 3.5.11 and 3.6.x before 3.6.7, and SeaMonkey before 2.0.6, allows remote attackers to execute arbitrary code via vectors related to deletion of an event attribute node with a nonzero reference count.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
Debian DSA |
DSA-2075-1 | New xulrunner packages fix several vulnerabilities |
Ubuntu USN |
USN-930-4 | Firefox and Xulrunner vulnerabilities |
Ubuntu USN |
USN-957-1 | Firefox and Xulrunner vulnerabilities |
References
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T01:14:06.608Z
Reserved: 2010-03-30T00:00:00.000Z
Link: CVE-2010-1208
No data.
Status : Modified
Published: 2010-07-30T20:30:01.393
Modified: 2026-06-16T23:17:51.327
Link: CVE-2010-1208
OpenCVE Enrichment
No data.
Weaknesses
-
CWE-416
Use After Free
Debian DSA
Ubuntu USN