CVE-2010-2117

EUVD-2010-2133
Mozilla Firefox 3.0.19, 3.5.x, and 3.6.x allows remote attackers to cause a denial of service (resource consumption) via JavaScript code containing an infinite loop that creates IFRAME elements for invalid (1) news:// or (2) nntp:// URIs.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
4.3 UNKNOWN
NETWORK
MEDIUM
AV:N/AC:M/Au:N/C:N/I:N/A:P
Base Score
CVSS 3.x
EPSS Score
Percentile: 64%
Affected Products (NVD)
VendorProductVersion
mozillafirefox
3.0.19
mozillafirefox
3.5
mozillafirefox
3.5.1
mozillafirefox
3.5.2
mozillafirefox
3.5.3
mozillafirefox
3.5.4
mozillafirefox
3.5.5
mozillafirefox
3.5.6
mozillafirefox
3.5.7
mozillafirefox
3.5.9
mozillafirefox
3.6
𝑥
= Vulnerable software versions
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
firefox
dapper
ignored
hardy
ignored
jaunty
dne
karmic
dne
lucid
ignored
xulrunner
dapper
dne
hardy
ignored
jaunty
ignored
karmic
ignored
lucid
dne
xulrunner-1.9
dapper
dne
hardy
ignored
jaunty
ignored
karmic
dne
lucid
dne
xulrunner-1.9.1
dapper
dne
hardy
dne
jaunty
ignored
karmic
ignored
lucid
dne
xulrunner-1.9.2
dapper
dne
hardy
ignored
jaunty
ignored
karmic
ignored
lucid
ignored
Common Weakness Enumeration