CVE-2010-0173

high

Description

Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, Thunderbird before 3.0.4, and SeaMonkey before 2.0.4 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via unknown vectors.

References

https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A7467

https://exchange.xforce.ibmcloud.com/vulnerabilities/57388

https://euvd.enisa.europa.eu/vulnerability/EUVD-2010-0204

https://bugzilla.mozilla.org/show_bug.cgi?id=542136

https://bugzilla.mozilla.org/show_bug.cgi?id=499862

https://bugzilla.mozilla.org/show_bug.cgi?id=496011

https://bugzilla.mozilla.org/show_bug.cgi?id=491722

https://bugzilla.mozilla.org/show_bug.cgi?id=488850

http://www.vupen.com/english/advisories/2010/0849

http://www.vupen.com/english/advisories/2010/0748

http://www.mozilla.org/security/announce/2010/mfsa2010-16.html

http://www.mandriva.com/security/advisories?name=MDVSA-2010:070

http://ubuntu.com/usn/usn-921-1

http://securitytracker.com/id?1023781

http://securitytracker.com/id?1023775

http://secunia.com/advisories/39397

http://secunia.com/advisories/39243

http://secunia.com/advisories/39242

http://secunia.com/advisories/39204

http://secunia.com/advisories/39136

http://lists.opensuse.org/opensuse-security-announce/2010-06/msg00001.html

http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038378.html

http://lists.fedoraproject.org/pipermail/package-announce/2010-April/038367.html

Details

Source: Mitre, NVD

Published: 2010-04-05

Updated: 2026-06-16

Risk Information

CVSS v2

Base Score: 9.3

Vector: CVSS2#AV:N/AC:M/Au:N/C:C/I:C/A:C

Severity: High

CVSS v3

Base Score: 8.8

Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Severity: High

EPSS

EPSS: 0.04545