The nsObserverList::FillObserverArray function in xpcom/ds/nsObserverList.cpp in Mozilla Firefox before 3.5.7 allows remote attackers to cause a denial of service (application crash) via a crafted web site that triggers memory consumption and an accompanying Low Memory alert dialog, and also triggers attempted removal of an observer from an empty observers array.
References
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2010-01-07 19:30
Updated : 2017-09-19 01:30
NVD link : CVE-2010-0220
Mitre link : CVE-2010-0220
CVE.ORG link : CVE-2010-0220
JSON object : View
Products Affected
mozilla
- firefox
CWE
CWE-399
Resource Management Errors