Mozilla Foundation Products XPCOM Memory Corruption Vulnerability

Various Mozilla Foundation products are prone to a memory-corruption vulnerability.

This issue occurs because the applications fail to handle simultaneous XPCOM events that would cause the deletion of the timer object.

An attacker can exploit this issue to execute arbitrary code.

This issue was previously discussed in BID 19181 (Mozilla Multiple Products Remote Vulnerabilities). It has been assigned a separate BID because new information has become available.


 

Privacy Statement
Copyright 2010, SecurityFocus