icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons icons_061

Mozilla Javascript Array Object Heap Overflow

High

Synopsis

The remote host is vulnerable to a heap overflow.

Description

The remote host is running a version of the Mozilla browser that contains a vulnerability in the JavaScript implementation. The condition is triggered when a large integer value (x40000000) is passed to the array constructor. The implementation of the array class fails to check for oversized integers, causing memory in the heap to be corrupted.

Solution

Upgrade to Mozilla 1.0.1, 1.1 or disable Javascript.