CVE-2010-3772: Critical severity Mozilla Firefox vulnerability
Mozilla Firefox before 3.5.16 and 3.6.x before 3.6.13, and SeaMonkey before 2.0.11, does not properly calculate index values for certain child content in a XUL tree, which allows remote attackers to execute arbitrary code via vectors involving a DIV element within a treechildren element.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2010-3772?
CVE-2010-3772 has been classified as critical due to its ability to allow remote code execution.
How do I fix CVE-2010-3772?
To mitigate CVE-2010-3772, update your Mozilla Firefox or SeaMonkey to the latest version available.
What versions are affected by CVE-2010-3772?
CVE-2010-3772 affects Mozilla Firefox versions before 3.6.13 and SeaMonkey versions before 2.0.11.
What are the implications of CVE-2010-3772?
CVE-2010-3772 allows attackers to execute arbitrary code, which can lead to system compromise.
Is there a workaround for CVE-2010-3772?
There are no effective workarounds for CVE-2010-3772 other than to apply the necessary updates.