CVE-2011-0073: Input Validation
Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, does not properly use nsTreeRange data structures, which allows remote attackers to execute arbitrary code via unspecified vectors that lead to a "dangling pointer."
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-0073?
CVE-2011-0073 is rated as a critical vulnerability that could allow remote attackers to execute arbitrary code.
How do I fix CVE-2011-0073?
To fix CVE-2011-0073, users should update their Mozilla Firefox or SeaMonkey browsers to the latest versions.
Which versions of Firefox are affected by CVE-2011-0073?
Affected versions of Firefox include all versions before 3.5.19 and 3.6.x before 3.6.17.
Is SeaMonkey also affected by CVE-2011-0073?
Yes, SeaMonkey versions prior to 2.0.14 are affected by CVE-2011-0073.
What type of vulnerability is CVE-2011-0073?
CVE-2011-0073 is a memory handling vulnerability related to improper use of nsTreeRange data structures, leading to potential arbitrary code execution.