CVE Database
/

CVE-2010-1986

Back to search

CVE-2010-1986

Published: May 20, 2010

Modified: Aug 7, 2024

PUBLISHED

Description

Mozilla Firefox 3.6.3 on Windows XP SP3 allows remote attackers to cause a denial of service (memory consumption and application crash) via JavaScript code that creates multiple arrays containing elements with long string values, and then appends long strings to the content of a P element, related to the gfxWindowsFontGroup::MakeTextRun function in xul.dll, a different vulnerability than CVE-2009-1571.

VendorProductVersions

n/a

n/a

affected
n/a

References

64791
vdb-entry
x_refsource_OSVDB
12678
exploit
x_refsource_EXPLOIT-DB
firefox-javascriptcode-dos(58761)
vdb-entry
x_refsource_XF
oval:org.mitre.oval:def:12433
vdb-entry
signature
x_refsource_OVAL

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now