CVE-2010-3166: Buffer Overflow
Heap-based buffer overflow in the nsTextFrameUtils::TransformText function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 might allow remote attackers to execute arbitrary code via a bidirectional text run.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3166?
CVE-2010-3166 is classified as a critical vulnerability that could enable remote code execution.
How do I fix CVE-2010-3166?
To fix CVE-2010-3166, upgrade affected Mozilla Firefox, Thunderbird, or SeaMonkey to the latest version that has patched this vulnerability.
What versions are affected by CVE-2010-3166?
CVE-2010-3166 affects Mozilla Firefox versions before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7.
Can CVE-2010-3166 be exploited remotely?
Yes, CVE-2010-3166 can be exploited remotely, allowing attackers to execute arbitrary code on the victim's system.
What is the nature of the vulnerability in CVE-2010-3166?
CVE-2010-3166 involves a heap-based buffer overflow in the nsTextFrameUtils::TransformText function of the affected software.