New Search

Mozilla JavaScript Garbage-collection Hazard Audit

oval:org.mitre.oval:def:1087

The JavaScript engine in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8 Mozilla Suite before 1.7.13 and SeaMonkey before 1.0 does not properly handle temporary variables that are not garbage collected which might allow remote attackers to trigger operations on freed memory and cause memory corruption.

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows Server 2003
  • Microsoft Windows 2000
  • Microsoft Windows XP
Class:
vulnerability
Reference(s):
  • CVE-2006-1742
Product(s):
  • mozilla