CVE
- Id
- 50285
- CVE No.
- CVE-2011-2373
- Status
- Candidate
- Description
- Use-after-free vulnerability in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14, when JavaScript is disabled, allows remote attackers to execute arbitrary code via a crafted XUL document.
- Phase
- Assigned (20110603)
- Votes
- None (candidate not yet proposed)
- Comments
Related CVE References
| Id | CVE Id | CVE No. | Reference | Actions |
|---|---|---|---|---|
| 543703 | 50285 | CVE-2011-2373 | CONFIRM:http://www.mozilla.org/security/announce/2011/mfsa2011-20.html | View |
| 543704 | 50285 | CVE-2011-2373 | CONFIRM:https://bugzilla.mozilla.org/show_bug.cgi?id=617247 | View |
| 543705 | 50285 | CVE-2011-2373 | CONFIRM:http://support.avaya.com/css/P8/documents/100144854 | View |
| 543706 | 50285 | CVE-2011-2373 | CONFIRM:http://support.avaya.com/css/P8/documents/100145333 | View |
| 543707 | 50285 | CVE-2011-2373 | DEBIAN:DSA-2268 | View |
| 543708 | 50285 | CVE-2011-2373 | URL:http://www.debian.org/security/2011/dsa-2268 | View |
| 543709 | 50285 | CVE-2011-2373 | DEBIAN:DSA-2269 | View |
| 543710 | 50285 | CVE-2011-2373 | URL:http://www.debian.org/security/2011/dsa-2269 | View |
| 543711 | 50285 | CVE-2011-2373 | DEBIAN:DSA-2273 | View |
| 543712 | 50285 | CVE-2011-2373 | URL:http://www.debian.org/security/2011/dsa-2273 | View |
| 543713 | 50285 | CVE-2011-2373 | MANDRIVA:MDVSA-2011:111 | View |
| 543714 | 50285 | CVE-2011-2373 | URL:http://www.mandriva.com/security/advisories?name=MDVSA-2011:111 | View |
| 543715 | 50285 | CVE-2011-2373 | REDHAT:RHSA-2011:0885 | View |
| 543716 | 50285 | CVE-2011-2373 | URL:http://www.redhat.com/support/errata/RHSA-2011-0885.html | View |
| 543717 | 50285 | CVE-2011-2373 | REDHAT:RHSA-2011:0887 | View |
| 543718 | 50285 | CVE-2011-2373 | URL:http://www.redhat.com/support/errata/RHSA-2011-0887.html | View |
| 543719 | 50285 | CVE-2011-2373 | REDHAT:RHSA-2011:0888 | View |
| 543720 | 50285 | CVE-2011-2373 | URL:http://www.redhat.com/support/errata/RHSA-2011-0888.html | View |
| 543721 | 50285 | CVE-2011-2373 | SUSE:SUSE-SA:2011:028 | View |
| 543722 | 50285 | CVE-2011-2373 | URL:http://lists.opensuse.org/opensuse-security-announce/2011-07/msg00001.html | View |
| 543723 | 50285 | CVE-2011-2373 | UBUNTU:USN-1149-1 | View |
| 543724 | 50285 | CVE-2011-2373 | URL:http://www.ubuntu.com/usn/USN-1149-1 | View |
| 543725 | 50285 | CVE-2011-2373 | OVAL:oval:org.mitre.oval:def:14178 | View |
| 543726 | 50285 | CVE-2011-2373 | URL:http://oval.mitre.org/repository/data/getDef?id=oval:org.mitre.oval:def:14178 | View |
| 543727 | 50285 | CVE-2011-2373 | SECUNIA:45002 | View |
| 543728 | 50285 | CVE-2011-2373 | URL:http://secunia.com/advisories/45002 | View |
| 543729 | 50285 | CVE-2011-2373 | XF:thunderbird-xul-code-exec(68133) | View |
Related JVN
| Id | JVN No. | Title | Summary | CVE No. | CVE Id | CVSS_v2 | CVSS_v3 | JVN URL | Actions |
|---|---|---|---|---|---|---|---|---|---|
| 31950 | JVNDB-2011-002190 | 複数の Mozilla 製品の appendChild 関数における任意のコードを実行される脆弱性 | 複数の Mozilla 製品の appendChild 関数は、DOM オブジェクトを適切に処理しないため、任意のコードを実行される脆弱性が存在します。 | CVE-2011-2378 | 50285 | 10 | http://jvndb.jvn.jp/ja/contents/2011/JVNDB-2011-002190.html | View |