List Info

Thread: PCWorks: Mozilla Firefox Memory Corruption Weakness




PCWorks: Mozilla Firefox Memory Corruption Weakness
user name
2006-08-18 10:29:26
TITLE:
Mozilla Firefox Memory Corruption Weakness

SECUNIA ADVISORY ID:
SA21513

VERIFY ADVISORY:
http://secunia.c
om/advisories/21513/

CRITICAL:
Not critical

IMPACT:
DoS

WHERE:
From remote

SOFTWARE:
Mozilla Firefox 1.x
http://secunia.com/p
roduct/4227/

DESCRIPTION:
Michal Zalewski has discovered a weakness in Firefox, which
can 
be
exploited by malicious people to cause a DoS (Denial of 
Service).

The weakness is caused due to an unspecified error and can
be
exploited to corrupt memory.

Successful exploitation crashes the browser. Execution of 
arbitrary
code has not been proven, but can't be completely ruled
out.

The weakness has been confirmed in version 1.5.0.6 for
Windows. 
Other
versions may also be affected.

NOTE: Secunia normally doesn't classify a browser crash as
a
vulnerability nor issue an advisory about it. However, the 
potential
risc of this issue may be more severe than currently
believed, 
which
justifies for an advisory being issued.

SOLUTION:
Do not visit untrusted web sites.
============= PCWorks Mailing List =================
Don't see your post? Check our posting guidelines &
make sure you've followed proper posting procedures,
http://pcworkers.com/r
ules.htm
Contact list owner <owner-pcworksimagicomm.com>
Unsubscribing and other changes: http://pcworkers.com
=====================================================
[1]

about | contact  Other archives ( Real Estate discussion Medical topics )