CVE Database
/

CVE-2010-3765

Back to search

CVE-2010-3765

Published: Oct 27, 2010

Modified: Oct 22, 2025

PUBLISHED

Description

Mozilla Firefox 3.5.x through 3.5.14 and 3.6.x through 3.6.11, Thunderbird 3.1.6 before 3.1.6 and 3.0.x before 3.0.10, and SeaMonkey 2.x before 2.0.10, when JavaScript is enabled, allows remote attackers to execute arbitrary code via vectors related to nsCSSFrameConstructor::ContentAppended, the appendChild method, incorrect index tracking, and the creation of multiple frames, which triggers memory corruption, as exploited in the wild in October 2010 by the Belmoo malware.

VendorProductVersions

n/a

n/a

affected
n/a

References

44425
vdb-entry
x_refsource_BID
RHSA-2010:0812
vendor-advisory
x_refsource_REDHAT
ADV-2010-2837
vdb-entry
x_refsource_VUPEN
41965
third-party-advisory
x_refsource_SECUNIA
41975
third-party-advisory
x_refsource_SECUNIA
RHSA-2010:0896
vendor-advisory
x_refsource_REDHAT
RHSA-2010:0808
vendor-advisory
x_refsource_REDHAT
15341
exploit
x_refsource_EXPLOIT-DB
1024651
vdb-entry
x_refsource_SECTRACK
41761
third-party-advisory
x_refsource_SECUNIA
FEDORA-2010-17105
vendor-advisory
x_refsource_FEDORA
41969
third-party-advisory
x_refsource_SECUNIA
USN-1011-3
vendor-advisory
x_refsource_UBUNTU
USN-1011-1
vendor-advisory
x_refsource_UBUNTU
1024650
vdb-entry
x_refsource_SECTRACK
USN-1011-2
vendor-advisory
x_refsource_UBUNTU
RHSA-2010:0809
vendor-advisory
x_refsource_REDHAT
MDVSA-2010:219
vendor-advisory
x_refsource_MANDRIVA
42867
third-party-advisory
x_refsource_SECUNIA
ADV-2010-2857
vdb-entry
x_refsource_VUPEN
ADV-2011-0061
vdb-entry
x_refsource_VUPEN
DSA-2124
vendor-advisory
x_refsource_DEBIAN
1024645
vdb-entry
x_refsource_SECTRACK
42043
third-party-advisory
x_refsource_SECUNIA
41966
third-party-advisory
x_refsource_SECUNIA
MDVSA-2010:213
vendor-advisory
x_refsource_MANDRIVA
42008
third-party-advisory
x_refsource_SECUNIA
FEDORA-2010-16883
vendor-advisory
x_refsource_FEDORA
SSA:2010-305-01
vendor-advisory
x_refsource_SLACKWARE
ADV-2010-2871
vdb-entry
x_refsource_VUPEN
RHSA-2010:0810
vendor-advisory
x_refsource_REDHAT
15352
exploit
x_refsource_EXPLOIT-DB
oval:org.mitre.oval:def:12108
vdb-entry
signature
x_refsource_OVAL
42003
third-party-advisory
x_refsource_SECUNIA
FEDORA-2010-16897
vendor-advisory
x_refsource_FEDORA
RHSA-2010:0861
vendor-advisory
x_refsource_REDHAT
FEDORA-2010-16885
vendor-advisory
x_refsource_FEDORA
15342
exploit
x_refsource_EXPLOIT-DB
ADV-2010-2864
vdb-entry
x_refsource_VUPEN

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now