CVE-2010-0173
published 2010-04-05CVE-2010-0173: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey…
PriorityP333critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
4.56%
90.6th percentile
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Affected
190 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 3.5.7 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_ubuntu9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Firefox 3.5 and Xulrunner vulnerabilities
vendor_ubuntu·2010-04-09·CVSS 9.3
CVE-2010-0182 [CRITICAL] Firefox 3.5 and Xulrunner vulnerabilities
Title: Firefox 3.5 and Xulrunner vulnerabilities
Summary: Firefox 3.5 and Xulrunner vulnerabilities
Martijn Wargers, Josh Soref, Jesse Ruderman, and Ehsan Akhgari discovered
flaws in the browser engine of Firefox. If a user were tricked into viewing
a malicious website, a remote attacker could cause a denial of service or
possibly execute arbitrary code with the privileges of the user invoking
the program. (CVE-2010-0173, CVE-2010-0174)
It was discovered that Firefox could be made to access previously freed
memory. If a user were tricked into viewing a malicious website, a remote
attacker could cause a denial of service or possibly execute arbitrary code
with the privileges of the user invoking the program. (CVE-2010-0175,
CVE-2010-0176, CVE-2010-0177)
Paul Stone discovered that Firefo
VulDB
Mozilla Firefox up to 1.0.8 Browser Engine memory corruption (Bug 542136 / Nessus ID 45392)
vuldb·2026-05-05·CVSS 9.3
CVE-2010-0173 [CRITICAL] Mozilla Firefox up to 1.0.8 Browser Engine memory corruption (Bug 542136 / Nessus ID 45392)
A vulnerability has been found in Mozilla Firefox and classified as critical. The impacted element is an unknown function of the component Browser Engine. Performing a manipulation results in memory corruption.
This vulnerability is reported as CVE-2010-0173. The attack is possible to be carried out remotely. No exploit exists.
The affected component should be upgraded.
GHSA
GHSA-42cg-5gpq-7hrm: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3
ghsa_unreviewed·2022-05-02
CVE-2010-0173 [HIGH] GHSA-42cg-5gpq-7hrm: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038367.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-April/038378.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/39136http://secunia.com/advisories/39204http://secunia.com/advisories/39242http://secunia.com/advisories/39243http://secunia.com/advisories/39397http://securitytracker.com/id?1023775http://securitytracker.com/id?1023781http://ubuntu.com/usn/usn-921-1http://www.mandriva.com/security/advisories?name=MDVSA-2010:070http://www.mozilla.org/security/announce/2010/mfsa2010-16.htmlhttp://www.vupen.com/english/advisories/2010/0748http://www.vupen.com/english/advisories/2010/0849https://bugzilla.mozilla.org/show_bug.cgi?id=488850https://bugzilla.mozilla.org/show_bug.cgi?id=491722https://bugzilla.mozilla.org/show_bug.cgi?id=496011https://bugzilla.mozilla.org/show_bug.cgi?id=499862https://bugzilla.mozilla.org/show_bug.cgi?id=542136https://exchange.xforce.ibmcloud.com/vulnerabilities/57388https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7467http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038367.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-April/038378.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/39136http://secunia.com/advisories/39204http://secunia.com/advisories/39242http://secunia.com/advisories/39243http://secunia.com/advisories/39397http://securitytracker.com/id?1023775http://securitytracker.com/id?1023781http://ubuntu.com/usn/usn-921-1http://www.mandriva.com/security/advisories?name=MDVSA-2010:070http://www.mozilla.org/security/announce/2010/mfsa2010-16.htmlhttp://www.vupen.com/english/advisories/2010/0748http://www.vupen.com/english/advisories/2010/0849https://bugzilla.mozilla.org/show_bug.cgi?id=488850https://bugzilla.mozilla.org/show_bug.cgi?id=491722https://bugzilla.mozilla.org/show_bug.cgi?id=496011https://bugzilla.mozilla.org/show_bug.cgi?id=499862https://bugzilla.mozilla.org/show_bug.cgi?id=542136https://exchange.xforce.ibmcloud.com/vulnerabilities/57388https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7467
2010-04-05
Published