Security Advisory

CVE-2010-2766

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2010-09-09 18:00:00
Last updated 2024-08-07 02:46:48
Assigner mitre
State PUBLISHED

Description

The normalizeDocument function in Mozilla Firefox before 3.5.12 and 3.6.x before 3.6.9, Thunderbird before 3.0.7 and 3.1.x before 3.1.3, and SeaMonkey before 2.0.7 does not properly handle the removal of DOM nodes during normalization, which might allow remote attackers to execute arbitrary code via vectors involving access to a deleted object.