10
CVSSv2

CVE-2011-0065

Published: 07/05/2011 Updated: 19/09/2017
CVSS v2 Base Score: 10 | Impact Score: 10 | Exploitability Score: 10
VMScore: 1000
Vector: AV:N/AC:L/Au:N/C:C/I:C/A:C

Vulnerability Summary

Use-after-free vulnerability in Mozilla Firefox prior to 3.5.19 and 3.6.x prior to 3.6.17, and SeaMonkey prior to 2.0.14, allows remote malicious users to execute arbitrary code via vectors related to OBJECT's mChannel.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

mozilla firefox 3.6

mozilla firefox 3.6.8

mozilla firefox 3.6.15

mozilla firefox 3.6.16

mozilla firefox 3.6.6

mozilla firefox 3.6.7

mozilla firefox 3.6.13

mozilla firefox 3.6.14

mozilla firefox 3.6.2

mozilla firefox 3.6.10

mozilla firefox 3.6.9

mozilla firefox 3.6.3

mozilla firefox 3.6.4

mozilla firefox 3.6.11

mozilla firefox 3.6.12

mozilla seamonkey 1.0.6

mozilla seamonkey 1.0.7

mozilla seamonkey 1.0

mozilla seamonkey 1.1.11

mozilla seamonkey 1.1.18

mozilla seamonkey 1.1.19

mozilla seamonkey 1.1.9

mozilla seamonkey 1.1

mozilla seamonkey 2.0.2

mozilla seamonkey 2.0.3

mozilla seamonkey 2.0

mozilla seamonkey 1.0.3

mozilla seamonkey 1.0.4

mozilla seamonkey 1.0.5

mozilla seamonkey 1.1.10

mozilla seamonkey 1.1.16

mozilla seamonkey 1.1.17

mozilla seamonkey 1.1.7

mozilla seamonkey 1.1.8

mozilla seamonkey 2.0.1

mozilla seamonkey 2.0.10

mozilla seamonkey 2.0.11

mozilla seamonkey 1.0.8

mozilla seamonkey 1.0.9

mozilla seamonkey 1.1.12

mozilla seamonkey 1.1.13

mozilla seamonkey 1.1.2

mozilla seamonkey 1.1.3

mozilla seamonkey 1.5.0.10

mozilla seamonkey 2.0.4

mozilla seamonkey 2.0.5

mozilla seamonkey 2.0.6

mozilla seamonkey 2.0.7

mozilla seamonkey 2.0.12

mozilla seamonkey

mozilla seamonkey 1.0.1

mozilla seamonkey 1.0.2

mozilla seamonkey 1.1.1

mozilla seamonkey 1.1.14

mozilla seamonkey 1.1.15

mozilla seamonkey 1.1.4

mozilla seamonkey 1.1.5

mozilla seamonkey 1.1.6

mozilla seamonkey 1.5.0.8

mozilla seamonkey 1.5.0.9

mozilla seamonkey 2.0.8

mozilla seamonkey 2.0.9

mozilla firefox 3.5.4

mozilla firefox 3.5.5

mozilla firefox 3.0.17

mozilla firefox 3.0.16

mozilla firefox 3.0.8

mozilla firefox 3.0.7

mozilla firefox 3.0

mozilla firefox 2.0.0.14

mozilla firefox 2.0.0.10

mozilla firefox 2.0.0.16

mozilla firefox 2.0.0.5

mozilla firefox 2.0.0.4

mozilla firefox 1.5.0.2

mozilla firefox 1.5.0.3

mozilla firefox 1.5.4

mozilla firefox 3.5.1

mozilla firefox 3.5.10

mozilla firefox 3.5.9

mozilla firefox 3.0.13

mozilla firefox 3.0.12

mozilla firefox 3.0.11

mozilla firefox 3.0.4

mozilla firefox 3.0.3

mozilla firefox 2.0.0.20

mozilla firefox 2.0.0.8

mozilla firefox 2.0.0.7

mozilla firefox 2.0

mozilla firefox 2.0.0.1

mozilla firefox 1.5

mozilla firefox 1.5.0.1

mozilla firefox 1.5.0.6

mozilla firefox 1.5.0.7

mozilla firefox 1.0

mozilla firefox 1.0.3

mozilla firefox 3.5.11

mozilla firefox 3.5.6

mozilla firefox 3.5.7

mozilla firefox 3.0.15

mozilla firefox 3.0.14

mozilla firefox 3.0.6

mozilla firefox 3.0.5

mozilla firefox 2.0.0.12

mozilla firefox 2.0.0.19

mozilla firefox 2.0.0.11

mozilla firefox 2.0.0.15

mozilla firefox 2.0.0.13

mozilla firefox 2.0.0.3

mozilla firefox 2.0.0.2

mozilla firefox 1.5.0.11

mozilla firefox 1.5.0.12

mozilla firefox 1.5.0.8

mozilla firefox 1.5.0.9

mozilla firefox 1.5.5

mozilla firefox 1.0.1

mozilla firefox 1.0.6

mozilla firefox 1.0.8

mozilla firefox 3.5.17

mozilla firefox

mozilla firefox 1.5.1

mozilla firefox 1.5.2

mozilla firefox 1.5.7

mozilla firefox 1.5.6

mozilla firefox 1.0.4

mozilla firefox 1.0.7

mozilla firefox 3.5.15

mozilla firefox 3.5.16

mozilla firefox 3.5.2

mozilla firefox 3.5.3

mozilla firefox 3.5.8

mozilla firefox 3.5

mozilla firefox 3.0.10

mozilla firefox 3.0.9

mozilla firefox 3.0.2

mozilla firefox 3.0.1

mozilla firefox 2.0.0.9

mozilla firefox 2.0.0.17

mozilla firefox 2.0.0.18

mozilla firefox 2.0.0.6

mozilla firefox 1.5.0.4

mozilla firefox 1.5.0.5

mozilla firefox 1.5.0.10

mozilla firefox 1.5.3

mozilla firefox 1.5.8

mozilla firefox 1.0.2

mozilla firefox 1.0.5

mozilla firefox 3.5.12

mozilla firefox 3.5.13

mozilla firefox 3.5.14

Vendor Advisories

Several vulnerabilities have been found in Iceweasel, a web browser based on Firefox: CVE-2011-0069 CVE-2011-0070 CVE-2011-0072 CVE-2011-0074 CVE-2011-0075 CVE-2011-0077 CVE-2011-0078 CVE-2011-0080 CVE-2011-0081 Scoobidiver, Ian Beer Bob Clary, Henri Sivonen, Marco Bonardo, Mats Palmgren, Jesse Ruderman, Aki Kelin and Martin Barbella disc ...
Several vulnerabilities have been discovered in Icedove, an unbranded version of the Thunderbird mail/news client CVE-2011-0069 CVE-2011-0070 CVE-2011-0072 CVE-2011-0074 CVE-2011-0075 CVE-2011-0077 CVE-2011-0078 CVE-2011-0080 CVE-2011-0081 Scoobidiver, Ian Beer Bob Clary, Henri Sivonen, Marco Bonardo, Ma ...
Multiple xulrunner-191 vulnerabilities ...
An empty menu bar sometimes appeared after upgrade in USN-1122-2 ...
Thunderbird could be made to run programs as your login if it opened specially crafted mail ...
Thunderbird could be made to run programs as your login if it opened specially crafted mail ...
Mozilla Foundation Security Advisory 2011-13 Multiple dangling pointer vulnerabilities Announced April 28, 2011 Reporter regenrecht Impact Critical Products Firefox, SeaMonkey Fixed in ...

Exploits

## # $Id: mozilla_mchannelrb 13507 2011-08-10 05:58:02Z sinn3r $ ## ## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' cla ...
<html> <body> <applet code="rubikclass" width=140 height=140></applet> <p><b>Mozilla mChannel Object use after free</b><br /> - Found by regenrecht<br /> - MSF exploit by Rh0<br /> - Win 7 fun version by mr_me</p> <!-- Notes: - This exploit requires <= java 6 update 25 - opt ...
## # This file is part of the Metasploit Framework and may be subject to # redistribution and commercial restrictions Please see the Metasploit # Framework web site for more information on licensing and terms of use # metasploitcom/framework/ ## require 'msf/core' class Metasploit3 < Msf::Exploit::Remote Rank = NormalRanking inclu ...
require 'msf/core' class Metasploit3 < Msf::Exploit::Remote Rank = NormalRanking # # This module acts as an HTTP server # include Msf::Exploit::Remote::HttpServer::HTML include Msf::Exploit::Remote::BrowserAutopwn autopwn_info({ :ua_name => HttpClients::FF, :ua_minver => "3616", :ua_maxver => "3616", :os_name => ...