Mozilla.Firefox.mChannel.Remote.Code.Execution

description-logoDescription

This indicates an attack attempt against a Dangling Pointer vulnerability in Mozilla Firefox.
The vulnerability is caused by an error when the software handles an "OBJECT" element that has no "mChannel" assigned. It allows remote attackers to execute arbitrary code via enticing legitimate users to access a specially crafted web page. Failed exploits will likely crash the program, leading to a Denial of Service condition.

affected-products-logoAffected Products

Mozilla Firefox before version 3.6.17
Mozilla Firefox before version 3.5.19

Impact logoImpact

System Compromise: Remote attackers can gain control of vulnerable systems.
Denial of Service: Remote attackers can crash vulnerable systems.

recomended-action-logoRecommended Actions

Upgrade to the latest version, available from the web site.
http://www.mozilla.org

Telemetry logoTelemetry

Coverage

IPS (Regular DB)
IPS (Extended DB)