Mozilla Firefox MathML XHTML Null Pointer Dereference Denial of Service Vulnerability
BID:32878
Info
Mozilla Firefox MathML XHTML Null Pointer Dereference Denial of Service Vulnerability
| Bugtraq ID: | 32878 |
| Class: | Failure to Handle Exceptional Conditions |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 16 2008 12:00AM |
| Updated: | Dec 17 2008 11:52PM |
| Credit: | Martijn Wargers |
| Vulnerable: |
Mozilla Firefox 3.0.4 Mozilla Firefox 3.0.3 Mozilla Firefox 3.0.2 Mozilla Firefox 3.0.1 Mozilla Firefox 3.0 |
| Not Vulnerable: |
Mozilla Firefox 3.0.5 |
Discussion
Mozilla Firefox MathML XHTML Null Pointer Dereference Denial of Service Vulnerability
Mozilla Firefox is prone to a remote denial-of-service vulnerability.
Successful exploits can allow attackers to crash the affected browser, resulting in denial-of-service conditions.
Firefox 3.0.4 is vulnerable; other versions may also be affected.
Mozilla Firefox is prone to a remote denial-of-service vulnerability.
Successful exploits can allow attackers to crash the affected browser, resulting in denial-of-service conditions.
Firefox 3.0.4 is vulnerable; other versions may also be affected.
Exploit / POC
Mozilla Firefox MathML XHTML Null Pointer Dereference Denial of Service Vulnerability
The following exploit file (when renamed as '.xhtml') will cause the application to crash:
The following exploit file (when renamed as '.xhtml') will cause the application to crash:
Solution / Fix
Mozilla Firefox MathML XHTML Null Pointer Dereference Denial of Service Vulnerability
Solution:
Updates are available; please see the references for more information.
Solution:
Updates are available; please see the references for more information.
References
Mozilla Firefox MathML XHTML Null Pointer Dereference Denial of Service Vulnerability
References:
References:
- Bug 416907 - Crash [@ nsHTMLFramesetFrame::Reflow] with frameset in mroot (Martijn Wargers)
- Mozilla Homepage (Mozilla Foundation)