Security Advisory

CVE-2010-0165

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2010-03-25 20:31:00
Last updated 2024-08-07 00:37:53
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

The TraceRecorder::traverseScopeChain function in js/src/jstracer.cpp in the browser engine in Mozilla Firefox 3.6 before 3.6.2 allows remote attackers to cause a denial of service (memory corruption and application crash) and possibly execute arbitrary code via vectors involving certain indirect calls to the JavaScript eval function.