Inappropriate coding practices In xulrunner
Description
The browser engine in Mozilla Firefox 4.x through 11.0, Thunderbird 5.0 through 11.0, and SeaMonkey before 2.9 allows remote attackers to cause a denial of service (assertion failure and memory corruption) or possibly execute arbitrary code via vectors related to jsval.h and the js::array_shift function.
Mitigation
Update Impact
Minimal update. May introduce new vulnerabilities or breaking changes.
Ecosystem | Component | Affected version | Patched versions |
|---|---|---|---|
rpm rhel6 | 0:10.0.4-1.el6_2 | ||
rpm rhel5 | 0:10.0.4-1.el5_8 | ||
rpm rhel6 | 0:10.0.4-1.el6_2 | ||
rpm rhel5 | 0:10.0.4-1.el5_8 | ||
rpm rhel6 | 0:10.0.4-1.el6_2 | ||
rpm rhel5 | 0:10.0.4-1.el5_8 |
Aliases
1. 2. 3.