Back to search
CVE-2008-2419
Published: May 23, 2008
Modified: Aug 7, 2024
PUBLISHED
Description
Mozilla Firefox 2.0.0.14 allows remote attackers to cause a denial of service (heap corruption and application crash) or possibly execute arbitrary code by triggering an error condition during certain Iframe operations between a JSframe write and a JSframe close, as demonstrated by an error in loading an empty Java applet defined by a 'src="javascript:"' sequence.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
mozilla-firefox-jsframe-code-execution(42589)
vdb-entry
x_refsource_XF
http://www.0x000000.com/?i=576
x_refsource_MISC
29318
vdb-entry
x_refsource_BID
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now