CVE-2010-0160: Critical severity Mozilla Firefox vulnerability
The Web Worker functionality in Mozilla Firefox 3.0.x before 3.0.18 and 3.5.x before 3.5.8, and SeaMonkey before 2.0.3, does not properly handle array data types for posted messages, which allows remote attackers to cause a denial of service (heap memory corruption and application crash) or possibly execute arbitrary code via unspecified vectors.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0160?
CVE-2010-0160 has been classified as a low severity vulnerability that can lead to denial of service through heap memory corruption affecting Firefox and SeaMonkey.
How do I fix CVE-2010-0160?
To fix CVE-2010-0160, users should upgrade to Firefox version 3.0.18 or later or SeaMonkey version 2.0.3 or later.
Which versions are affected by CVE-2010-0160?
CVE-2010-0160 affects Mozilla Firefox versions 3.0.x before 3.0.18 and 3.5.x before 3.5.8, as well as SeaMonkey versions before 2.0.3.
What type of attack is enabled by CVE-2010-0160?
CVE-2010-0160 allows remote attackers to cause a denial of service through an exploit that targets the Web Worker functionality.
What browsers are impacted by CVE-2010-0160?
CVE-2010-0160 specifically impacts Mozilla Firefox and SeaMonkey browsers, particularly older versions prior to their respective patches.