This application requires Javascript for optimal performance.

Mozilla.Firefox.JS.Engine.Function.Integer.Overflow

Release Date

Dec 16, 2011

Severity

high

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.

Description

This indicates an attack attempt against an Integer Overflow vulnerability in the Javascript engine in Mozilla Firefox.

The vulnerability is caused by an error when the vulnerable software handles a specially crafted webpage. It allows a remote attacker to execute arbitrary code.

Affected Products

Mozilla Firefox 1.5.0.4 and previous versions

Recommended Actions

Upgrade to Firefox 1.5.0.5:
http://www.mozilla.org/firefox/

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2006-3806

Reference/s

http://www.securityfocus.com/bid/19181 (BugTraq)

Reference: VID-30292