First published: Thu Sep 29 2011(Updated: )
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.6.23 and 4.x through 6, Thunderbird before 7.0, and SeaMonkey before 2.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox | =3.6.2 | |
Firefox | =3.6.3 | |
Firefox | =3.6.15 | |
Firefox | =3.6.17 | |
Firefox | =3.6.11 | |
Firefox | =3.6.8 | |
Firefox | =3.6.9 | |
Firefox | =3.6.14 | |
Firefox | =3.6.12 | |
Firefox | <=3.6.22 | |
Firefox | =3.6.6 | |
Firefox | =3.6.21 | |
Firefox | =3.6.16 | |
Firefox | =3.6.10 | |
Firefox | =3.6.19 | |
Firefox | =3.6.7 | |
Firefox | =3.6.4 | |
Firefox | =3.6.18 | |
Firefox | =3.6.20 | |
Firefox | =3.6 | |
Firefox | =3.6.13 | |
Firefox | =4.0-beta6 | |
Firefox | =4.0-beta1 | |
Firefox | =4.0-beta9 | |
Firefox | =4.0-beta5 | |
Firefox | =4.0-beta8 | |
Firefox | =4.0-beta12 | |
Firefox | =4.0-beta3 | |
Firefox | =5.0 | |
Firefox | =4.0-beta2 | |
Firefox | =4.0-beta4 | |
Firefox | =4.0-beta10 | |
Firefox | =4.0 | |
Firefox | =6.0 | |
Firefox | =4.0-beta11 | |
Firefox | =4.0-beta7 | |
Firefox | =4.0.1 | |
Thunderbird | =3.0.8 | |
Thunderbird | =3.0.5 | |
Thunderbird | =1.5.0.7 | |
Thunderbird | =0.6 | |
Thunderbird | =0.7.2 | |
Thunderbird | =3.1.8 | |
Thunderbird | =2.0.0.4 | |
Thunderbird | =3.1.11 | |
Thunderbird | =3.0.9 | |
Thunderbird | =2.0.0.6 | |
Thunderbird | =0.3 | |
Thunderbird | =2.0.0.21 | |
Thunderbird | =3.0.1 | |
Thunderbird | =3.1.7 | |
Thunderbird | =0.2 | |
Thunderbird | =3.1.2 | |
Thunderbird | =3.1.9 | |
Thunderbird | =3.1.1 | |
Thunderbird | =2.0_.5 | |
Thunderbird | =1.0.7 | |
Thunderbird | =2.0.0.18 | |
Thunderbird | =2.0.0.9 | |
Thunderbird | =2.0_.12 | |
Thunderbird | =2.0.0.15 | |
Thunderbird | =2.0.0.16 | |
Thunderbird | =2.0.0.20 | |
Thunderbird | =2.0.0.8 | |
Thunderbird | =2.0.0.7 | |
Thunderbird | =1.7.1 | |
Thunderbird | =2.0_8 | |
Thunderbird | =1.5.0.3 | |
Thunderbird | =1.5.0.10 | |
Thunderbird | =1.5.0.5 | |
Thunderbird | =3.1.4 | |
Thunderbird | =1.5.0.6 | |
Thunderbird | =1.0 | |
Thunderbird | =3.0.7 | |
Thunderbird | =2.0.0.3 | |
Thunderbird | =3.0.6 | |
Thunderbird | =1.0.1 | |
Thunderbird | =1.5-beta2 | |
Thunderbird | =2.0.0.2 | |
Thunderbird | =3.0.10 | |
Thunderbird | =3.0.3 | |
Thunderbird | =1.0.2 | |
Thunderbird | =2.0.0.0 | |
Thunderbird | =1.5.0.13 | |
Thunderbird | =3.1.5 | |
Thunderbird | =3.0.11 | |
Thunderbird | =5.0 | |
Thunderbird | =2.0.0.12 | |
Thunderbird | =2.0.0.22 | |
Thunderbird | =1.5 | |
Thunderbird | =1.5.0.2 | |
Thunderbird | =3.1.10 | |
Thunderbird | =2.0.0.13 | |
Thunderbird | =2.0_.9 | |
Thunderbird | =1.5.0.8 | |
Thunderbird | =2.0.0.14 | |
Thunderbird | =3.0.4 | |
Thunderbird | =0.5 | |
Thunderbird | =1.0.4 | |
Thunderbird | =1.5.2 | |
Thunderbird | =2.0.0.17 | |
Thunderbird | =2.0.0.23 | |
Thunderbird | =1.5.0.9 | |
Thunderbird | =1.5.0.11 | |
Thunderbird | =0.9 | |
Thunderbird | =1.0.3 | |
Thunderbird | =2.0 | |
Thunderbird | =2.0.0.11 | |
Thunderbird | =3.0 | |
Thunderbird | =1.5.0.12 | |
Thunderbird | =2.0_.13 | |
Thunderbird | =2.0_.14 | |
Thunderbird | =0.7.3 | |
Thunderbird | =0.4 | |
Thunderbird | =1.5.1 | |
Thunderbird | =0.7 | |
Thunderbird | =1.5.0.14 | |
Thunderbird | =3.1 | |
Thunderbird | =1.0.6 | |
Thunderbird | =1.0.5-beta | |
Thunderbird | =3.1.3 | |
Thunderbird | <=6.0.2 | |
Thunderbird | =2.0.0.5 | |
Thunderbird | =3.1.6 | |
Thunderbird | =1.7.3 | |
Thunderbird | =2.0.0.1 | |
Thunderbird | =1.5.0.1 | |
Thunderbird | =2.0_.4 | |
Thunderbird | =1.0.8 | |
Thunderbird | =0.1 | |
Thunderbird | =0.7.1 | |
Thunderbird | =1.0.5 | |
Thunderbird | =0.8 | |
Thunderbird | =2.0_.6 | |
Thunderbird | =3.0.2 | |
Thunderbird | =2.0.0.19 | |
Thunderbird | =1.5.0.4 | |
Mozilla SeaMonkey | =2.0.10 | |
Mozilla SeaMonkey | =1.1.10 | |
Mozilla SeaMonkey | =1.0.3 | |
Mozilla SeaMonkey | =2.0.13 | |
Mozilla SeaMonkey | =1.1.8 | |
Mozilla SeaMonkey | =1.0.1 | |
Mozilla SeaMonkey | =1.1.7 | |
Mozilla SeaMonkey | =1.5.0.10 | |
Mozilla SeaMonkey | =1.0.6 | |
Mozilla SeaMonkey | =1.0.9 | |
Mozilla SeaMonkey | =1.1.3 | |
Mozilla SeaMonkey | =2.0a1pre | |
Mozilla SeaMonkey | =2.0.4 | |
Mozilla SeaMonkey | =1.0 | |
Mozilla SeaMonkey | =2.1-alpha2 | |
Mozilla SeaMonkey | =2.0.3 | |
Mozilla SeaMonkey | =2.0.2 | |
Mozilla SeaMonkey | =1.1.17 | |
Mozilla SeaMonkey | =1.0.99 | |
Mozilla SeaMonkey | =2.0-alpha_2 | |
Mozilla SeaMonkey | =1.1.5 | |
Mozilla SeaMonkey | =2.0.8 | |
Mozilla SeaMonkey | =1.0.7 | |
Mozilla SeaMonkey | =1.0-beta | |
Mozilla SeaMonkey | =1.1-alpha | |
Mozilla SeaMonkey | =2.0-rc2 | |
Mozilla SeaMonkey | =2.0-alpha_3 | |
Mozilla SeaMonkey | =1.0-alpha | |
Mozilla SeaMonkey | =2.0a1 | |
Mozilla SeaMonkey | =1.1.12 | |
Mozilla SeaMonkey | =2.0.12 | |
Mozilla SeaMonkey | =1.1 | |
Mozilla SeaMonkey | =1.1.14 | |
Mozilla SeaMonkey | =2.0.11 | |
Mozilla SeaMonkey | =1.1.2 | |
Mozilla SeaMonkey | =1.0 | |
Mozilla SeaMonkey | =2.0-beta_2 | |
Mozilla SeaMonkey | =1.0.2 | |
Mozilla SeaMonkey | =1.0.8 | |
Mozilla SeaMonkey | =1.1.11 | |
Mozilla SeaMonkey | =2.0-alpha_1 | |
Mozilla SeaMonkey | =1.5.0.9 | |
Mozilla SeaMonkey | =1.1-beta | |
Mozilla SeaMonkey | =1.1.1 | |
Mozilla SeaMonkey | =2.0.9 | |
Mozilla SeaMonkey | =2.1-alpha1 | |
Mozilla SeaMonkey | =1.5.0.8 | |
Mozilla SeaMonkey | =1.1.5-1.1.10 | |
Mozilla SeaMonkey | =2.0.1 | |
Mozilla SeaMonkey | =1.0.5 | |
Mozilla SeaMonkey | =1.1.15 | |
Mozilla SeaMonkey | =2.0.14 | |
Mozilla SeaMonkey | =1.1.6 | |
Mozilla SeaMonkey | =2.0.7 | |
Mozilla SeaMonkey | =1.1.16 | |
Mozilla SeaMonkey | <=2.3.3 | |
Mozilla SeaMonkey | =2.0-beta_1 | |
Mozilla SeaMonkey | =1.0 | |
Mozilla SeaMonkey | =1.0 | |
Mozilla SeaMonkey | =1.1.19 | |
Mozilla SeaMonkey | =2.0.5 | |
Mozilla SeaMonkey | =2.0-rc1 | |
Mozilla SeaMonkey | =1.0.4 | |
Mozilla SeaMonkey | =1.1.9 | |
Mozilla SeaMonkey | =1.1.13 | |
Mozilla SeaMonkey | =1.1.18 | |
Mozilla SeaMonkey | =2.0.6 | |
Mozilla SeaMonkey | =2.1-alpha3 | |
Mozilla SeaMonkey | =2.0 | |
Mozilla SeaMonkey | =1.1.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2011-2995 is classified as a high severity vulnerability due to its ability to cause denial of service or potential code execution.
To fix CVE-2011-2995, you should upgrade Mozilla Firefox, Thunderbird, or SeaMonkey to the latest version that is not affected.
Versions of Mozilla Firefox before 3.6.23, Thunderbird before 7.0, and SeaMonkey before 2.4 are vulnerable to CVE-2011-2995.
CVE-2011-2995 can enable attackers to execute arbitrary code or crash the application leading to a denial of service.
You can determine if you're affected by CVE-2011-2995 by checking if you are using a version of Firefox, Thunderbird, or SeaMonkey that is older than the patched versions.