CVE-2011-3000Code Injection in Mozilla Firefox

CWE-94Code Injection16 documents7 sources
Severity
4.3MEDIUMNVD
EPSS
1.3%
top 20.24%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedSep 29
Latest updateMay 17

Description

Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 do not properly handle HTTP responses that contain multiple Location, Content-Length, or Content-Disposition headers, which makes it easier for remote attackers to conduct HTTP response splitting attacks via crafted header values.

CVSS vector

AV:N/AC:M/C:N/I:P/A:NExploitability: 8.6 | Impact: 2.9

Affected Packages3 packages

NVDmozilla/firefox3.6.22+24
NVDmozilla/seamonkey2.3.3+52
NVDmozilla/thunderbird6.0.2+97

🔴Vulnerability Details

2
GHSA
GHSA-mm6x-3vj3-q4jp: Mozilla Firefox before 32022-05-17
CVEList
CVE-2011-3000: Mozilla Firefox before 32011-09-29

💥Exploits & PoCs

7
Exploit-DB
Bugbear FlatOut 2005 - '.bed' File Buffer Overflow2011-11-30
Exploit-DB
Muse Music All-in-One 1.5.0.001 - '.pls' Local Buffer Overflow (DEP Bypass)2011-09-26
Exploit-DB
ZipX 1.71 - '.ZIP' File Buffer Overflow2011-09-05
Exploit-DB
D.R. Software Audio Converter 8.1 - DEP Bypass2011-08-13
Exploit-DB
ZipGenius 6.3.2.3000 - '.zip' Local Buffer Overflow2011-07-08

📋Vendor Advisories

5
Ubuntu
Mozvoikko, ubufox, webfav update2011-10-04
Ubuntu
Firefox vulnerabilities2011-09-29
Red Hat
Mozilla: Defense against multiple Location headers due to CRLF Injection (MFSA 2011-39)2011-09-28
Ubuntu
Firefox and Xulrunner vulnerabilities2011-09-28
Ubuntu
Thunderbird vulnerabilities2011-09-28

💬Community

1
Bugzilla
CVE-2011-3000 Mozilla: Defense against multiple Location headers due to CRLF Injection (MFSA 2011-39)2011-09-28
CVE-2011-3000 — Code Injection in Mozilla Firefox | cvebase