CVE-2011-3660: Critical severity firefox vulnerability
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors that trigger a compartment mismatch associated with the nsDOMMessageEvent::GetData function, and unknown other vectors.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2011-3660?
CVE-2011-3660 has a critical severity rating due to its potential for remote code execution and denial of service.
How do I fix CVE-2011-3660?
To fix CVE-2011-3660, upgrade to the latest version of Mozilla Firefox, Thunderbird, or SeaMonkey that addresses this vulnerability.
What versions are affected by CVE-2011-3660?
CVE-2011-3660 affects Mozilla Firefox versions 4.x through 8.0, Thunderbird versions 5.0 through 8.0, and SeaMonkey versions before 2.6.
What kind of attacks are possible with CVE-2011-3660?
CVE-2011-3660 allows attackers to exploit vulnerabilities for memory corruption leading to denial of service or potentially executing arbitrary code.
Is there a workaround for CVE-2011-3660?
There are no known effective workarounds for CVE-2011-3660; updating to a patched version is the recommended action.