New Search

Mozilla JavaScript Garbage-collection Hazard Audit

oval:org.mitre.oval:def:1087

The JavaScript engine in Mozilla Firefox and Thunderbird 1.x before 1.5 and 1.0.x before 1.0.8 Mozilla Suite before 1.7.13 and SeaMonkey before 1.0 does not properly handle temporary variables that are not garbage collected which might allow remote attackers to trigger operations on freed memory and cause memory corruption.

Family:
windows
Status:
ACCEPTED
Platform(s):
  • Microsoft Windows XP
  • Microsoft Windows Server 2003
  • Microsoft Windows 2000
Class:
vulnerability
Reference(s):
  • CVE-2006-1742
Product(s):
  • mozilla