Intrusion Prevention

Mozilla.Firefox.JavaScript.Argument.Passing.Code.Execution

Description

This indicates an attack attempt against a remote code execution vulnerability in Mozilla Firefox.
The vulnerability is caused by an error when the vulnerable software handles a specially crafted web page. It allows a remote attacker to execute arbitrary code.

Affected Products

Mozilla Firefox 2.0.0.1 and previous versions
Mozilla Firefox 1.5.0.9 and previous versions

Impact

System Compromise: Remote attackers can gain control of vulnerable systems.
Denial of Service: Remote attackers can crash vulnerable systems.

Recommended Actions

Upgrade to Mozilla Firefox version 2.0.0.2 or 1.5.0.10:
http://www.mozilla.com/firefox/

CVE References

CVE-2007-0777