CVE-2010-0183
published 2010-06-24CVE-2010-0183: Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3.5.x before 3.5.10 and SeaMonkey before 2.0.5 allows remote…
PriorityP340critical9.3CVSS 2.0
AVNACMAuNCCICAC
EPSS
3.95%
89.3th percentile
Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3.5.x before 3.5.10 and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a crafted HTML document, related to an improper frame construction process for menus.
Affected
44 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | seamonkey | <= 2.0.4 | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
| mozilla | seamonkey | — | — |
CVSS provenance
nvdv2.09.3CRITICALAV:N/AC:M/Au:N/C:C/I:C/A:C
vendor_redhat9.3CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-jqfj-5p8v-wpjh: Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3
ghsa_unreviewed·2022-05-02
CVE-2010-0183 [HIGH] GHSA-jqfj-5p8v-wpjh: Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3
Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3.5.x before 3.5.10 and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a crafted HTML document, related to an improper frame construction process for menus.
Red Hat
nsCycleCollector:: MarkRoots()
vendor_redhat·2010-06-22·CVSS 9.3
CVE-2010-0183 [CRITICAL] CWE-416 nsCycleCollector:: MarkRoots()
nsCycleCollector:: MarkRoots()
Use-after-free vulnerability in the nsCycleCollector::MarkRoots function in Mozilla Firefox 3.5.x before 3.5.10 and SeaMonkey before 2.0.5 allows remote attackers to execute arbitrary code via a crafted HTML document, related to an improper frame construction process for menus.
Package: firefox (Red Hat Enterprise Linux 4) - Affected
Package: firefox (Red Hat Enterprise Linux 5) - Affected
Package: firefox (Red Hat Enterprise Linux 6) - Not affected
Suricata
GPL TFTP Put
suricata·2010-09-23
CVE-1999-0183 GPL TFTP Put
GPL TFTP Put
Rule: alert udp $EXTERNAL_NET any -> $HOME_NET 69 (msg:"GPL TFTP Put"; content:"|00 02|"; depth:2; reference:cve,1999-0183; classtype:bad-unknown; sid:2100518; rev:8; metadata:created_at 2010_09_23, cve CVE_1999_0183, signature_severity Informational, tag Description_Generated_By_Proofpoint_Nexus, updated_at 2019_07_26;)
Bugzilla
CVE-2010-4253 OpenOffice.org: heap based buffer overflow in PPT import
bugzilla·2010-11-29·CVSS 9.3
CVE-2010-4253 [CRITICAL] CVE-2010-4253 OpenOffice.org: heap based buffer overflow in PPT import
CVE-2010-4253 OpenOffice.org: heap based buffer overflow in PPT import
Marc Schoenefeld discovered a heap based buffer overflow in
OpenOffice.org 3.X, when imported certain Microsoft PowerPoint
files (PPT). If a user opened a specially crafted PPT file,
it could lead to applicable crash or possibly execution of
arbitrary code, with the privileges of the user running
OpenOffice.org Impress.
This has been assigned CVE-2010-4253
Discussion:
Public via:
http://www.openoffice.org/security/cves/CVE-2010-4253.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 5
Via RHSA-2011:0182 https://rhn.redhat.com/errata/RHSA-2011-0182.html
---
This issue has been addressed in following products:
Red Hat Enterprise Linux 6
Via RHSA-2011:0183 https://rhn.redhat
Bugzilla
CVE-2010-0183 Mozilla Use-after-free error in nsCycleCollector::MarkRoots()
bugzilla·2010-05-10·CVSS 9.3
CVE-2010-0183 [CRITICAL] CVE-2010-0183 Mozilla Use-after-free error in nsCycleCollector::MarkRoots()
CVE-2010-0183 Mozilla Use-after-free error in nsCycleCollector::MarkRoots()
Security researcher wushi of team509 reported that the frame construction
process for certain types of menus could result in a menu containing a
pointer to a previously freed menu item. During the cycle collection
process this freed item could be accessed, resulting in the execution of a
section of code potentially controlled by an attacker.
Discussion:
This is public now:
http://www.mozilla.org/security/announce/2010/mfsa2010-27.html
---
seamonkey-2.0.5-1.fc12 has been submitted as an update for Fedora 12.
http://admin.fedoraproject.org/updates/seamonkey-2.0.5-1.fc12
---
seamonkey-2.0.5-1.fc13 has been submitted as an update for Fedora 13.
http://admin.fedoraproject.org/updates/seamonkey-2.0.5-1.fc13
---
http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043369.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-June/043405.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-07/msg00005.htmlhttp://secunia.com/advisories/40326http://secunia.com/advisories/40481http://www.mozilla.org/security/announce/2010/mfsa2010-27.htmlhttp://www.securityfocus.com/bid/41050http://www.securitytracker.com/id?1024138http://www.vupen.com/english/advisories/2010/1551http://www.vupen.com/english/advisories/2010/1592http://www.vupen.com/english/advisories/2010/1773https://bugzilla.mozilla.org/show_bug.cgi?id=557174https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12586http://lists.fedoraproject.org/pipermail/package-announce/2010-June/043369.htmlhttp://lists.fedoraproject.org/pipermail/package-announce/2010-June/043405.htmlhttp://lists.opensuse.org/opensuse-security-announce/2010-07/msg00005.htmlhttp://secunia.com/advisories/40326http://secunia.com/advisories/40481http://www.mozilla.org/security/announce/2010/mfsa2010-27.htmlhttp://www.securityfocus.com/bid/41050http://www.securitytracker.com/id?1024138http://www.vupen.com/english/advisories/2010/1551http://www.vupen.com/english/advisories/2010/1592http://www.vupen.com/english/advisories/2010/1773https://bugzilla.mozilla.org/show_bug.cgi?id=557174https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A12586
2010-06-24
Published