CVE-2010-3179

Mozilla Firefox <3.5.14 & <3.6.11 - Buffer Overflow

Title source: llm

Description

Stack-based buffer overflow in the text-rendering functionality in Mozilla Firefox before 3.5.14 and 3.6.x before 3.6.11, Thunderbird before 3.0.9 and 3.1.x before 3.1.5, and SeaMonkey before 2.0.9 allows remote attackers to execute arbitrary code or cause a denial of service (memory corruption and application crash) via a long argument to the document.write method.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Alexander Miller · htmlremotelinux
https://www.exploit-db.com/exploits/34881

Scores

EPSS 0.2255
EPSS Percentile 95.9%

Details

CWE
CWE-119
Status published
Products (47)
mozilla/firefox 3.6
mozilla/firefox 3.6.2
mozilla/firefox 3.6.3
mozilla/firefox 3.6.4
mozilla/firefox 3.6.6
mozilla/firefox 3.6.7
mozilla/firefox 3.6.8
mozilla/firefox 3.6.9
mozilla/firefox 3.6.10
mozilla/firefox 1.0 (2 CPE variants)
... and 37 more
Published Oct 21, 2010
Tracked Since Feb 18, 2026