CVE-2010-0182
published 2010-04-05CVE-2010-0182: The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform…
PriorityP417medium4.3CVSS 2.0
AVNACMAuNCNIPAN
EPSS
1.19%
64.4th percentile
The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform the expected nsIContentPolicy checks during loading of content by XML documents, which allows attackers to bypass intended access restrictions via crafted content.
Affected
190 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 3.5.7 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
CVSS provenance
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:P/A:N
vendor_ubuntu9.3CRITICAL
vendor_redhat4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Ubuntu
Firefox 3.5 and Xulrunner vulnerabilities
vendor_ubuntu·2010-04-09·CVSS 9.3
CVE-2010-0182 [CRITICAL] Firefox 3.5 and Xulrunner vulnerabilities
Title: Firefox 3.5 and Xulrunner vulnerabilities
Summary: Firefox 3.5 and Xulrunner vulnerabilities
Martijn Wargers, Josh Soref, Jesse Ruderman, and Ehsan Akhgari discovered
flaws in the browser engine of Firefox. If a user were tricked into viewing
a malicious website, a remote attacker could cause a denial of service or
possibly execute arbitrary code with the privileges of the user invoking
the program. (CVE-2010-0173, CVE-2010-0174)
It was discovered that Firefox could be made to access previously freed
memory. If a user were tricked into viewing a malicious website, a remote
attacker could cause a denial of service or possibly execute arbitrary code
with the privileges of the user invoking the program. (CVE-2010-0175,
CVE-2010-0176, CVE-2010-0177)
Paul Stone discovered that Firefo
Red Hat
mozilla: XMLDocument:: load() doesn't check nsIContentPolicy (MFSA 2010-24)
vendor_redhat·2010-03-30·CVSS 4.3
CVE-2010-0182 [MEDIUM] mozilla: XMLDocument:: load() doesn't check nsIContentPolicy (MFSA 2010-24)
mozilla: XMLDocument:: load() doesn't check nsIContentPolicy (MFSA 2010-24)
The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform the expected nsIContentPolicy checks during loading of content by XML documents, which allows attackers to bypass intended access restrictions via crafted content.
GHSA
GHSA-h98r-2r7c-g497: The XMLDocument::load function in Mozilla Firefox before 3
ghsa_unreviewed·2022-05-02
CVE-2010-0182 [MEDIUM] CWE-20 GHSA-h98r-2r7c-g497: The XMLDocument::load function in Mozilla Firefox before 3
The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform the expected nsIContentPolicy checks during loading of content by XML documents, which allows attackers to bypass intended access restrictions via crafted content.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2010-4253 OpenOffice.org: heap based buffer overflow in PPT import
bugzilla·2010-11-29·CVSS 9.3
CVE-2010-4253 [CRITICAL] CVE-2010-4253 OpenOffice.org: heap based buffer overflow in PPT import
CVE-2010-4253 OpenOffice.org: heap based buffer overflow in PPT import
Marc Schoenefeld discovered a heap based buffer overflow in
OpenOffice.org 3.X, when imported certain Microsoft PowerPoint
files (PPT). If a user opened a specially crafted PPT file,
it could lead to applicable crash or possibly execution of
arbitrary code, with the privileges of the user running
OpenOffice.org Impress.
This has been assigned CVE-2010-4253
Discussion:
Public via:
http://www.openoffice.org/security/cves/CVE-2010-4253.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
Via RHSA-2011:0182 https://rhn.redhat.com/errata/RHSA-2011-0182.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2011:0183 https://rhn.redhat
Bugzilla
CVE-2010-0182 mozilla: XMLDocument::load() doesn't check nsIContentPolicy (MFSA 2010-24)
bugzilla·2010-04-27·CVSS 4.3
CVE-2010-0182 [MEDIUM] CVE-2010-0182 mozilla: XMLDocument::load() doesn't check nsIContentPolicy (MFSA 2010-24)
CVE-2010-0182 mozilla: XMLDocument::load() doesn't check nsIContentPolicy (MFSA 2010-24)
Common Vulnerabilities and Exposures assigned an identifier CVE-2010-0182 to
the following vulnerability:
The XMLDocument::load function in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 does not perform the expected nsIContentPolicy checks during loading of content by XML documents, which allows attackers to bypass intended access restrictions via crafted content.
References:
http://www.mozilla.org/security/announce/2010/mfsa2010-24.html
https://bugzilla.mozilla.org/show_bug.cgi?id=490790
http://www.securityfocus.com/bid/39479
This issue has been corrected upstream in Firefox 3.5.x and 3.6.x. It has not yet been addressed in Firefox 3.0.x
http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/39397http://support.avaya.com/css/P8/documents/100091069http://ubuntu.com/usn/usn-921-1http://www.mandriva.com/security/advisories?name=MDVSA-2010:070http://www.mozilla.org/security/announce/2010/mfsa2010-24.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0500.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0501.htmlhttp://www.securityfocus.com/bid/39479http://www.vupen.com/english/advisories/2010/0748http://www.vupen.com/english/advisories/2010/0849http://www.vupen.com/english/advisories/2010/1557https://bugzilla.mozilla.org/show_bug.cgi?id=490790https://exchange.xforce.ibmcloud.com/vulnerabilities/57396https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7618https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9375http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.htmlhttp://secunia.com/advisories/39397http://support.avaya.com/css/P8/documents/100091069http://ubuntu.com/usn/usn-921-1http://www.mandriva.com/security/advisories?name=MDVSA-2010:070http://www.mozilla.org/security/announce/2010/mfsa2010-24.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0500.htmlhttp://www.redhat.com/support/errata/RHSA-2010-0501.htmlhttp://www.securityfocus.com/bid/39479http://www.vupen.com/english/advisories/2010/0748http://www.vupen.com/english/advisories/2010/0849http://www.vupen.com/english/advisories/2010/1557https://bugzilla.mozilla.org/show_bug.cgi?id=490790https://exchange.xforce.ibmcloud.com/vulnerabilities/57396https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7618https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A9375
2010-04-05
Published