CVE-2010-0181: Input Validation
Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, executes a mail application in situations where an IMG element has a SRC attribute that is a redirect to a mailto: URL, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many images.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-0181?
CVE-2010-0181 is classified as a moderate severity vulnerability that allows denial of service due to excessive application launches.
How do I fix CVE-2010-0181?
To fix CVE-2010-0181, update to a patched version of Mozilla Firefox or SeaMonkey as recommended by the vendor.
Which versions are affected by CVE-2010-0181?
CVE-2010-0181 affects Mozilla Firefox versions before 3.5.9 and 3.6.x before 3.6.2, as well as SeaMonkey before 2.0.4.
What type of attack does CVE-2010-0181 exploit?
CVE-2010-0181 exploits a flaw where an IMG element can trigger excessive launches of a mail application through a mailto URL.
Is there a workaround for CVE-2010-0181?
There are no official workarounds for CVE-2010-0181; users should upgrade to a secure version to ensure protection.