CVE-2010-0159

CVSS v2.0 10 (High)
100% Progress
EPSS 4.43 % (93th)
4.43% Progress
Affected Products 5
Advisories 10

The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the nsBlockFrame::StealFrame function in layout/generic/nsBlockFrame.cpp, and unspecified other vectors.

Weaknesses
CWE-NVD-noinfo
CVE Status
PUBLISHED
CNA
MITRE
Published Date
2010-02-22 13:00:02
(14 years ago)
Updated Date
2018-11-16 15:56:41
(5 years ago)

Affected Products

Loading...
Loading...

Configuration #1

    CPE23 From Up To
  Mozilla Firefox from 3.0 version and prior 3.0.18 version cpe:2.3:a:mozilla:firefox >= 3.0 < 3.0.18
  Mozilla Firefox from 3.5 version and prior 3.5.8 version cpe:2.3:a:mozilla:firefox >= 3.5 < 3.5.8
  Mozilla Seamonkey prior 2.0.3 version cpe:2.3:a:mozilla:seamonkey < 2.0.3
  Mozilla Thunderbird prior 3.0.2 version cpe:2.3:a:mozilla:thunderbird < 3.0.2

Configuration #2

    CPE23 From Up To
  Debian Linux 5.0 cpe:2.3:o:debian:debian_linux:5.0

Configuration #3

    CPE23 From Up To
  Canonical Ubuntu Linux 8.04 cpe:2.3:o:canonical:ubuntu_linux:8.04:*:*:*:lts
  Canonical Ubuntu Linux 8.10 cpe:2.3:o:canonical:ubuntu_linux:8.10
  Canonical Ubuntu Linux 9.04 cpe:2.3:o:canonical:ubuntu_linux:9.04
  Canonical Ubuntu Linux 9.10 cpe:2.3:o:canonical:ubuntu_linux:9.10
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...
Loading...