LWN.net Logo

firefox: denial of service

Package(s):Firefox CVE #(s):CVE-2010-1990
Created:August 30, 2010 Updated:September 1, 2010
Description: From the MeeGo advisory:

Mozilla Firefox 3.6.x, 3.5.x, 3.0.19, and earlier, and SeaMonkey, executes a mail application in situations where an IFRAME element has a mailto: URL in its SRC attribute, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many IFRAME elements. CVSS v2 Base: 5.0 (MEDIUM) Access Vector: Network exploitable

Alerts:
MeeGo MeeGo-SA-10:12 2010-08-03

(Log in to post comments)

Copyright © 2013, Eklektix, Inc.
Comments and public postings are copyrighted by their creators.
Linux is a registered trademark of Linus Torvalds