CVE-2010-0159
published 2010-02-22CVE-2010-0159: The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers…
PriorityP336critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
4.79%
90.9th percentile
The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the nsBlockFrame::StealFrame function in layout/generic/nsBlockFrame.cpp, and unspecified other vectors.
Affected
9 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| canonical | ubuntu_linux | — | — |
| debian | debian_linux | — | — |
| mozilla | firefox | >= 3.0 < 3.0.18 | 3.0.18 |
| mozilla | firefox | >= 3.5 < 3.5.8 | 3.5.8 |
| mozilla | seamonkey | < 2.0.3 | 2.0.3 |
| mozilla | thunderbird | < 3.0.2 | 3.0.2 |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
vendor_ubuntu10.0CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
VulDB
Mozilla Firefox up to 3.5.7 Browser Engine nsBlockFrame::StealFrame memory corruption (Bug 534082 / Nessus ID 44648)
vuldb·2026-05-01·CVSS 10.0
CVE-2010-0159 [CRITICAL] Mozilla Firefox up to 3.5.7 Browser Engine nsBlockFrame::StealFrame memory corruption (Bug 534082 / Nessus ID 44648)
A vulnerability classified as critical was found in Mozilla Firefox. This vulnerability affects the function nsBlockFrame::StealFrame of the component Browser Engine. The manipulation results in memory corruption.
This vulnerability is reported as CVE-2010-0159. The attack can be launched remotely. No exploit exists.
Upgrading the affected component is advised.
GHSA
GHSA-5xww-5f35-hfhp: The browser engine in Mozilla Firefox 3
ghsa_unreviewed·2022-05-02
CVE-2010-0159 [HIGH] GHSA-5xww-5f35-hfhp: The browser engine in Mozilla Firefox 3
The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the nsBlockFrame::StealFrame function in layout/generic/nsBlockFrame.cpp, and unspecified other vectors.
Ubuntu
Firefox 3.0 and Xulrunner 1.9 vulnerabilities
vendor_ubuntu·2010-02-17·CVSS 10.0
CVE-2010-0159 [CRITICAL] Firefox 3.0 and Xulrunner 1.9 vulnerabilities
Title: Firefox 3.0 and Xulrunner 1.9 vulnerabilities
Summary: Firefox 3.0 and Xulrunner 1.9 vulnerabilities
Several flaws were discovered in the browser engine of Firefox. If a user
were tricked into viewing a malicious website, a remote attacker could
cause a denial of service or possibly execute arbitrary code with the
privileges of the user invoking the program. (CVE-2010-0159)
Orlando Barrera II discovered a flaw in the Web Workers implementation of
Firefox. If a user were tricked into posting to a malicious website, an
attacker could cause a denial of service or possibly execute arbitrary code
with the privileges of the user invoking the program. (CVE-2010-0160)
Alin Rad Pop discovered that Firefox's HTML parser would incorrectly free
memory under certain circumstances. If the bro
Ubuntu
Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
vendor_ubuntu·2010-02-17·CVSS 10.0
CVE-2010-0160 [CRITICAL] Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
Title: Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
Summary: Firefox 3.5 and Xulrunner 1.9.1 vulnerabilities
Several flaws were discovered in the browser engine of Firefox. If a user
were tricked into viewing a malicious website, a remote attacker could
cause a denial of service or possibly execute arbitrary code with the
privileges of the user invoking the program. (CVE-2010-0159)
Orlando Barrera II discovered a flaw in the Web Workers implementation of
Firefox. If a user were tricked into posting to a malicious website, an
attacker could cause a denial of service or possibly execute arbitrary code
with the privileges of the user invoking the program. (CVE-2010-0160)
Alin Rad Pop discovered that Firefox's HTML parser would incorrectly free
memory under certain circumstances. If the
Red Hat
Mozilla crashes with evidence of memory corruption (MFSA 2010-01)
vendor_redhat·2010-02-17·CVSS 10.0
CVE-2010-0159 [CRITICAL] Mozilla crashes with evidence of memory corruption (MFSA 2010-01)
Mozilla crashes with evidence of memory corruption (MFSA 2010-01)
The browser engine in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, Thunderbird before 3.0.2, and SeaMonkey before 2.0.3 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors related to the nsBlockFrame::StealFrame function in layout/generic/nsBlockFrame.cpp, and unspecified other vectors.
No detection rules found.
No public exploits indexed.
http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035346.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035367.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035426.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-March/036097.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-March/036132.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00001.htmlhttp://secunia.com/advisories/37242http://secunia.com/advisories/38770http://secunia.com/advisories/38772http://secunia.com/advisories/38847http://www.debian.org/security/2010/dsa-1999http://www.mandriva.com/security/advisories?name=MDVSA-2010:042http://www.mozilla.org/security/announce/2010/mfsa2010-01.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0112.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0113.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0153.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0154.htmlhttp://www.ubuntu.com/usn/USN-895-1http://www.ubuntu.com/usn/USN-896-1http://www.vupen.com/english/advisories/2010/0405http://www.vupen.com/english/advisories/2010/0650https://bugzilla.mozilla.org/show_bug.cgi?id=467005https://bugzilla.mozilla.org/show_bug.cgi?id=501934https://bugzilla.mozilla.org/show_bug.cgi?id=527567https://bugzilla.mozilla.org/show_bug.cgi?id=528134https://bugzilla.mozilla.org/show_bug.cgi?id=528300https://bugzilla.mozilla.org/show_bug.cgi?id=530880https://bugzilla.mozilla.org/show_bug.cgi?id=534082https://exchange.xforce.ibmcloud.com/vulnerabilities/56359https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8485https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9590http://lists.fedoraproject.org/pipermail/package-announce/2010-February/035346.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035367.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-February/035426.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-March/036097.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-March/036132.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-03/msg00001.htmlhttp://secunia.com/advisories/37242http://secunia.com/advisories/38770http://secunia.com/advisories/38772http://secunia.com/advisories/38847http://www.debian.org/security/2010/dsa-1999http://www.mandriva.com/security/advisories?name=MDVSA-2010:042http://www.mozilla.org/security/announce/2010/mfsa2010-01.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0112.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0113.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0153.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0154.htmlhttp://www.ubuntu.com/usn/USN-895-1http://www.ubuntu.com/usn/USN-896-1http://www.vupen.com/english/advisories/2010/0405http://www.vupen.com/english/advisories/2010/0650https://bugzilla.mozilla.org/show_bug.cgi?id=467005https://bugzilla.mozilla.org/show_bug.cgi?id=501934https://bugzilla.mozilla.org/show_bug.cgi?id=527567https://bugzilla.mozilla.org/show_bug.cgi?id=528134https://bugzilla.mozilla.org/show_bug.cgi?id=528300https://bugzilla.mozilla.org/show_bug.cgi?id=530880https://bugzilla.mozilla.org/show_bug.cgi?id=534082https://exchange.xforce.ibmcloud.com/vulnerabilities/56359https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A8485https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9590
2010-02-22
Published