CVE-2011-2371

Mozilla Seamonkey < 3.6.17 - Numeric Error

Title source: rule

Description

Integer overflow in the Array.reduceRight method in Mozilla Firefox before 3.6.18 and 4.x through 4.0.1, Thunderbird before 3.1.11, and SeaMonkey through 2.0.14 allows remote attackers to execute arbitrary code via vectors involving a long JavaScript Array object.

Exploits (4)

exploitdb WORKING POC VERIFIED
by Metasploit · rubyremotewindows
https://www.exploit-db.com/exploits/17976
exploitdb WORKING POC VERIFIED
by ryujin · htmlremotewindows
https://www.exploit-db.com/exploits/17974
exploitdb WORKING POC
by pa_kt · htmlremotewindows
https://www.exploit-db.com/exploits/18531
metasploit WORKING POC NORMAL
by Chris Rohlf, Yan Ivnitskiy, Matteo Memelli, dookie2000ca, Helping, sinn3r · rubypocwin
https://github.com/rapid7/metasploit-framework/blob/master/modules/exploits/windows/browser/mozilla_reduceright.rb

Scores

EPSS 0.8621
EPSS Percentile 99.4%

Details

CWE
CWE-189
Status published
Products (47)
mozilla/firefox 1.0 (2 CPE variants)
mozilla/firefox 1.0.1
mozilla/firefox 1.0.2
mozilla/firefox 1.0.3
mozilla/firefox 1.0.4
mozilla/firefox 1.0.5
mozilla/firefox 1.0.6
mozilla/firefox 1.0.7
mozilla/firefox 1.0.8
mozilla/firefox 1.5 (3 CPE variants)
... and 37 more
Published Jun 30, 2011
Tracked Since Feb 18, 2026