Your submission was sent successfully! Close

CVE-2010-0176

Published: 05 April 2010

Mozilla Firefox before 3.0.19, 3.5.x before 3.5.9, and 3.6.x before 3.6.2; Thunderbird before 3.0.4; and SeaMonkey before 2.0.4 do not properly manage reference counts for option elements in a XUL tree optgroup, which might allow remote attackers to execute arbitrary code via unspecified vectors that trigger access to deleted elements, related to a "dangling pointer vulnerability."

Priority

Medium

Status

Package Release Status
firefox
Launchpad, Ubuntu, Debian
Upstream
Released (3.6.3)
seamonkey
Launchpad, Ubuntu, Debian
Upstream
Released (2.0.4)
thunderbird
Launchpad, Ubuntu, Debian
Upstream
Released (3.0.4)
xulrunner-1.9
Launchpad, Ubuntu, Debian
Upstream
Released (1.9.0.19)
xulrunner-1.9.1
Launchpad, Ubuntu, Debian
Upstream
Released (1.9.1.9)