This application requires Javascript for optimal performance.

Mozilla.Firefox.Layout.Memory.Corruption

Alias(es)

Mozilla.Firefox.Layout.Crash, Mozilla.firefox.layout.DoS

Release Date

Nov 30, 2007

Severity

high

Impact

Denial of Service: Remote attackers can crash vulnerable systems.

Description

This indicates a possible attempt to exploit one of several vulnerabilities in Mozilla Firefox and SeaMonkey.

The vulneabilities are a result of memory corruption in the Layout Component. They may allow a remote attacker to crash the application causing a Denial of Service.

Affected Products

Mozilla Firefox before 2.0.0.10
SeaMonkey before 1.1.7.

Recommended Actions

Upgrade to the latest versions: Firefox 2.0.0.10, SeaMonkey 1.1.7 or newer.

Coverage

IPS
VCM

Common Vulnerabilities and Exposures (CVE)

CVE-2007-5959

Reference/s

http://www.securityfocus.com/bid/26593 (BugTraq)
http://www.mozilla.org/security/announce/2007/mfsa2007-38.html

Reference: VID-15167