FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

CVE-2010-0181

This CVE name corresponds to:

Entered Topic
2010-03-30 mozilla -- multiple vulnerabilities

The following information is adapted from the Common Vulnerabilities and Exposures (CVE) project. CVE and the CVE logo are trademarks of The MITRE Corporation. CVE content is Copyright 2005, The MITRE Corporation.

Details

Type Candidate
Name CVE-2010-0181
Phase Assigned(20100106)

Description

Mozilla Firefox before 3.5.9 and 3.6.x before 3.6.2, and SeaMonkey before 2.0.4, executes a mail application in situations where an IMG element has a SRC attribute that is a redirect to a mailto: URL, which allows remote attackers to cause a denial of service (excessive application launches) via an HTML document with many images.

References

Source Reference
BUGTRAQ 20100518 DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers
MISC http://websecurity.com.ua/4206/
CONFIRM http://www.mozilla.org/security/announce/2010/mfsa2010-23.html
CONFIRM https://bugzilla.mozilla.org/show_bug.cgi?id=452093
MANDRIVA MDVSA-2010:070
SUSE SUSE-SR:2010:013
UBUNTU USN-921-1
OVAL oval:org.mitre.oval:def:6776
SECUNIA 39136
SECUNIA 39397
VUPEN ADV-2010-0748
VUPEN ADV-2010-0849
XF firefox-mailto-weak-security(57395)