CVE
- Id
- 42744
- CVE No.
- CVE-2010-0160
- Status
- Candidate
- Description
- The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
- Phase
- Assigned (20100106)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
Id | CVE Id | CVE No. | Reference | Actions |
---|---|---|---|---|
465779 | 42744 | CVE-2010-0160 | BUGTRAQ:20100402 ZDI-10-046: Mozilla Firefox Web Worker Array Remote Code Execution Vulnerability | View |
465780 | 42744 | CVE-2010-0160 | URL:http://www.securityfocus.com/archive/1/archive/1/510533/100/0/threaded | View |
465781 | 42744 | CVE-2010-0160 | MISC:http://www.zerodayinitiative.com/advisories/ZDI-10-046 | View |
465782 | 42744 | CVE-2010-0160 | CONFIRM:http://www.mozilla.org/security/announce/2010/mfsa2010-02.html | View |
465783 | 42744 | CVE-2010-0160 | CONFIRM:https://bugzilla.mozilla.org/show_bug.cgi?id=531222 | View |
465784 | 42744 | CVE-2010-0160 | CONFIRM:https://bugzilla.mozilla.org/show_bug.cgi?id=533000 | View |
465785 | 42744 | CVE-2010-0160 | CONFIRM:https://bugzilla.mozilla.org/show_bug.cgi?id=534051 | View |
465786 | 42744 | CVE-2010-0160 | DEBIAN:DSA-1999 | View |
465787 | 42744 | CVE-2010-0160 | URL:http://www.debian.org/security/2010/dsa-1999 | View |
465788 | 42744 | CVE-2010-0160 | FEDORA:FEDORA-2010-1727 | View |
465789 | 42744 | CVE-2010-0160 | URL:http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035426.html | View |
465790 | 42744 | CVE-2010-0160 | FEDORA:FEDORA-2010-1932 | View |
465791 | 42744 | CVE-2010-0160 | URL:http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035346.html | View |
465792 | 42744 | CVE-2010-0160 | FEDORA:FEDORA-2010-1936 | View |
465793 | 42744 | CVE-2010-0160 | URL:http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035367.html | View |
465794 | 42744 | CVE-2010-0160 | MANDRIVA:MDVSA-2010:042 | View |
465795 | 42744 | CVE-2010-0160 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2010:042 | View |
465796 | 42744 | CVE-2010-0160 | REDHAT:RHSA-2010:0112 | View |
465797 | 42744 | CVE-2010-0160 | URL:http://www.redhat.com/support/errata/RHSA-2010-0112.html | View |
465798 | 42744 | CVE-2010-0160 | SUSE:SUSE-SA:2010:015 | View |
465799 | 42744 | CVE-2010-0160 | URL:http://lists.opensuse.org/opensuse-security-announce/2010-03/msg00001.html | View |
465800 | 42744 | CVE-2010-0160 | UBUNTU:USN-895-1 | View |
465801 | 42744 | CVE-2010-0160 | URL:http://www.ubuntu.com/usn/USN-895-1 | View |
465802 | 42744 | CVE-2010-0160 | UBUNTU:USN-896-1 | View |
465803 | 42744 | CVE-2010-0160 | URL:http://www.ubuntu.com/usn/USN-896-1 | View |
465804 | 42744 | CVE-2010-0160 | OVAL:oval:org.mitre.oval:def:11166 | View |
465805 | 42744 | CVE-2010-0160 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:11166 | View |
465806 | 42744 | CVE-2010-0160 | OVAL:oval:org.mitre.oval:def:8465 | View |
465807 | 42744 | CVE-2010-0160 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:8465 | View |
465808 | 42744 | CVE-2010-0160 | SECUNIA:37242 | View |
465809 | 42744 | CVE-2010-0160 | URL:http://secunia.com/advisories/37242 | View |
465810 | 42744 | CVE-2010-0160 | SECUNIA:38847 | View |
465811 | 42744 | CVE-2010-0160 | URL:http://secunia.com/advisories/38847 | View |
465812 | 42744 | CVE-2010-0160 | VUPEN:ADV-2010-0405 | View |
465813 | 42744 | CVE-2010-0160 | URL:http://www.vupen.com/english/advisories/2010/0405 | View |
465814 | 42744 | CVE-2010-0160 | XF:mozilla-webworkers-code-execution(56360) | View |
Related JVN
Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
---|---|---|---|---|---|---|---|---|---|
35429 | JVNDB-2010-001209 | Mozilla Firefox の imgContainer::InternalAddFrameHelper 関数における任意のコードを実行される脆弱性 | Mozilla Firefox の src/imgContainer.cpp にある imgContainer::InternalAddFrameHelper 関数には、サービス運用妨害 (DoS) 状態となる、または任意のコードを実行される脆弱性が存在します。 | CVE-2010-0164 | 42744 | 9.3 | http://jvndb.jvn.jp/ja/contents/2010/JVNDB-2010-001209.html | View |