CVE-2011-2375
published 2011-06-30CVE-2011-2375: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 5.0 and Thunderbird through 3.1.11 allow remote attackers to cause a…
PriorityP337critical10CVSS 2.0
AVNACLAuNCCICAC
EPSS
5.50%
92.0th percentile
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 5.0 and Thunderbird through 3.1.11 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Affected
191 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| mozilla | firefox | <= 4.0.1 | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
| mozilla | firefox | — | — |
CVSS provenance
nvdv2.010.0CRITICALAV:N/AC:L/Au:N/C:C/I:C/A:C
vendor_redhat10.0CRITICAL
vendor_ubuntu4.3MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
Red Hat
kernel: incomplete fix for CVE-2011-4131
vendor_redhat·2012-03-22·CVSS 4.6
CVE-2012-2375 [MEDIUM] kernel: incomplete fix for CVE-2011-4131
kernel: incomplete fix for CVE-2011-4131
The __nfs4_get_acl_uncached function in fs/nfs/nfs4proc.c in the NFSv4 implementation in the Linux kernel before 3.3.2 uses an incorrect length variable during a copy operation, which allows remote NFS servers to cause a denial of service (OOPS) by sending an excessive number of bitmap words in an FATTR4_ACL reply. NOTE: this vulnerability exists because of an incomplete fix for CVE-2011-4131.
Package: kernel (Red Hat Enterprise Linux 5) - Not affected
Package: kernel (Red Hat Enterprise Linux Extended Update Support 6.2) - Affected
Package: kernel (Red Hat Enterprise Linux Extended Update Support 6.3) - Affected
Ubuntu
Firefox regression
vendor_ubuntu·2011-06-23·CVSS 4.3
[MEDIUM] Firefox regression
Title: Firefox regression
Summary: Under certain circumstances, the updated translations could unintentionally
install firefox.
USN-1157-1 fixed vulnerabilities in Firefox. Unfortunately, this update
produced the side effect of pulling in Firefox on some systems that did not
have it installed during a dist-upgrade due to changes in the Ubuntu
language packs. This update fixes the problem. We apologize for the
inconvenience.
Original advisory details:
Bob Clary, Kevin Brosnan, Gary Kwong, Jesse Ruderman, Christian Biesinger,
Bas Schouten, Igor Bukanov, Bill McCloskey, Olli Pettay, Daniel Veditz and
Marcia Knous discovered multiple memory vulnerabilities in the browser
rendering engine. An attacker could possibly execute arbitrary code with
the privileges of the user invoking Firefox. (C
Ubuntu
mozvoikko, ubufox, webfav update
vendor_ubuntu·2011-06-22·CVSS 4.3
[MEDIUM] mozvoikko, ubufox, webfav update
Title: mozvoikko, ubufox, webfav update
Summary: This update provides provides packages compatible with Firefox 5.
USN-1157-1 fixed vulnerabilities in Firefox. This update provides updated
packages for use with Firefox 5.
Original advisory details:
Bob Clary, Kevin Brosnan, Gary Kwong, Jesse Ruderman, Christian Biesinger,
Bas Schouten, Igor Bukanov, Bill McCloskey, Olli Pettay, Daniel Veditz and
Marcia Knous discovered multiple memory vulnerabilities in the browser
rendering engine. An attacker could possibly execute arbitrary code with
the privileges of the user invoking Firefox. (CVE-2011-2374, CVE-2011-2375)
Martin Barbella discovered that under certain conditions, viewing a XUL
document while JavaScript was disabled caused deleted memory to be
accessed. An attacker could potential
Ubuntu
Firefox vulnerabilities
vendor_ubuntu·2011-06-22·CVSS 4.3
CVE-2011-2375 [MEDIUM] Firefox vulnerabilities
Title: Firefox vulnerabilities
Summary: Multiple Firefox vulnerabilities have been fixed
Bob Clary, Kevin Brosnan, Gary Kwong, Jesse Ruderman, Christian Biesinger,
Bas Schouten, Igor Bukanov, Bill McCloskey, Olli Pettay, Daniel Veditz and
Marcia Knous discovered multiple memory vulnerabilities in the browser
rendering engine. An attacker could possibly execute arbitrary code with
the privileges of the user invoking Firefox. (CVE-2011-2374, CVE-2011-2375)
Martin Barbella discovered that under certain conditions, viewing a XUL
document while JavaScript was disabled caused deleted memory to be
accessed. An attacker could potentially use this to crash Firefox or
execute arbitrary code with the privileges of the user invoking Firefox.
(CVE-2011-2373)
Jordi Chancel discovered a vulnerability
Red Hat
Mozilla Miscellaneous memory safety hazards (MFSA 2011-19)
vendor_redhat·2011-06-21·CVSS 10.0
CVE-2011-2375 [CRITICAL] Mozilla Miscellaneous memory safety hazards (MFSA 2011-19)
Mozilla Miscellaneous memory safety hazards (MFSA 2011-19)
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 5.0 and Thunderbird through 3.1.11 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
GHSA
GHSA-4v3g-f433-532p: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 5
ghsa_unreviewed·2022-05-17
CVE-2011-2375 [HIGH] GHSA-4v3g-f433-532p: Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 5
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 5.0 and Thunderbird through 3.1.11 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
No detection rules found.
No public exploits indexed.
Bugzilla
CVE-2012-2375 kernel: incomplete fix for CVE-2011-4131
bugzilla·2012-05-18·CVSS 4.6
CVE-2012-2375 [MEDIUM] CVE-2012-2375 kernel: incomplete fix for CVE-2011-4131
CVE-2012-2375 kernel: incomplete fix for CVE-2011-4131
The fix for CVE-2011-4131 was not complete. Malicious NFS server could still crash the clients when returns more than 2 GETATTR bitmap words in response to the FATTR4_ACL attribute request.
Upstream fixes:
20e0fa98b751facf9a1101edaefbc19c82616a68
5794d21ef4639f0e33440927bb903f9598c21e92
5a00689930ab975fdd1b37b034475017e460cf2a
Discussion:
Created kernel tracking bugs for this issue
Affects: fedora-all [bug 822874]
---
Added CVE as per http://www.openwall.com/lists/oss-security/2012/05/18/13
---
kernel-3.3.7-1.fc17 has been pushed to the Fedora 17 stable repository. If problems still persist, please make note of it in this bug report.
---
kernel-3.3.7-1.fc16 has been pushed to the Fedora 16 stable repository. If problems stil
Bugzilla
CVE-2011-2364 CVE-2011-2365 CVE-2011-2374 CVE-2011-2375 CVE-2011-2376 CVE-2011-2605 Mozilla Miscellaneous memory safety hazards (MFSA 2011-19)
bugzilla·2011-06-20·CVSS 10.0
CVE-2011-2364 [CRITICAL] CVE-2011-2364 CVE-2011-2365 CVE-2011-2374 CVE-2011-2375 CVE-2011-2376 CVE-2011-2605 Mozilla Miscellaneous memory safety hazards (MFSA 2011-19)
CVE-2011-2364 CVE-2011-2365 CVE-2011-2374 CVE-2011-2375 CVE-2011-2376 CVE-2011-2605 Mozilla Miscellaneous memory safety hazards (MFSA 2011-19)
Mozilla developers identified and fixed several memory safety bugs
in the browser engine used in Firefox and other Mozilla-based products.
Some of these bugs showed evidence of memory corruption under certain
circumstances, and we presume that with enough effort at least some
of these could be exploited to run arbitrary code.
Discussion:
Public now via:
[1] http://www.mozilla.org/security/announce/2011/mfsa2011-19.html
---
Further issue(s) details from [1]:
* Bob Clary, Kevin Brosnan, Nils, Gary Kwong, Jesse Ruderman and Christian
Biesinger reported memory safety problems that were fixed in Firefox 5 and
Firefox 3.6.18
References:
- Memory s
http://support.avaya.com/css/P8/documents/100144854http://support.avaya.com/css/P8/documents/100145333http://www.mandriva.com/security/advisories?name=MDVSA-2011:111http://www.mozilla.org/security/announce/2011/mfsa2011-19.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0885.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0886.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0887.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0888.htmlhttps://bugzilla.mozilla.org/show_bug.cgi?id=597162https://bugzilla.mozilla.org/show_bug.cgi?id=643839https://bugzilla.mozilla.org/show_bug.cgi?id=643927https://bugzilla.mozilla.org/show_bug.cgi?id=648022https://bugzilla.mozilla.org/show_bug.cgi?id=648705https://bugzilla.mozilla.org/show_bug.cgi?id=652401https://bugzilla.mozilla.org/show_bug.cgi?id=653026https://bugzilla.mozilla.org/show_bug.cgi?id=653238https://bugzilla.mozilla.org/show_bug.cgi?id=654015https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14071http://support.avaya.com/css/P8/documents/100144854http://support.avaya.com/css/P8/documents/100145333http://www.mandriva.com/security/advisories?name=MDVSA-2011:111http://www.mozilla.org/security/announce/2011/mfsa2011-19.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0885.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0886.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0887.htmlhttp://www.redhat.com/support/errata/RHSA-2011-0888.htmlhttps://bugzilla.mozilla.org/show_bug.cgi?id=597162https://bugzilla.mozilla.org/show_bug.cgi?id=643839https://bugzilla.mozilla.org/show_bug.cgi?id=643927https://bugzilla.mozilla.org/show_bug.cgi?id=648022https://bugzilla.mozilla.org/show_bug.cgi?id=648705https://bugzilla.mozilla.org/show_bug.cgi?id=652401https://bugzilla.mozilla.org/show_bug.cgi?id=653026https://bugzilla.mozilla.org/show_bug.cgi?id=653238https://bugzilla.mozilla.org/show_bug.cgi?id=654015https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14071
2011-06-30
Published