CVE-2011-0065
Use-after-free vulnerability in Mozilla Firefox before 3.5.19 and 3.6.x before 3.6.17, and SeaMonkey before 2.0.14, allows remote attackers to execute arbitrary code via vectors related to OBJECT's mChannel.
- Mozilla Firefox
- = 3.6, 3.6.2, 3.6.3, 3.6.4, 3.6.6, 3.6.7, 3.6.8, 3.6.9, 3.6.10, 3.6.11, 3.6.12, 3.6.13, 3.6.14, 3.6.15, 3.6.16
- Fix
- Available
- CVSS 2.0
- 10.0 HIGH
- EPSS
- 73.8% (99th percentile)
- Weakness
- CWE-399
- NVD status
- Modified
- Published
- 2011-05-07
CVE-2011-0065 at NVD
16 known exploits for CVE-2011-0065
Proof-of-concept code and exploit modules indexed by Sploitus
Exploit for Improper Restriction of Operations within the Bounds of a Memory Buffer in Adobe Acrobat
Mozilla Firefox 3.6 mChannel Use-After-Free Vulnerability
Mozilla Firefox 3.6 mChannel Use-After-Free
Mozilla Firefox 3.6.16 (OSX) - mChannel Use-After-Free (Metasploit) (2)
Mozilla Firefox OBJECT mChannel Use-After-Free
Mozilla Firefox OBJECT mChannel Use-After-Free
Mozilla Firefox OBJECT mChannel Use-After-Free
Mozilla Firefox OBJECT mChannel Use-After-Free
Mozilla Firefox 3.6.16 (Windows 7) - mChannel Object Use-After-Free
Mozilla Firefox 3.6.16 (Windows) - mChannel Use-After-Free (Metasploit) (1)
Mozilla Firefox 3.6.16 mChannel Use After Free
Mozilla Firefox 3.6.16 - OBJECT mChannel Remote Code Execution (DEP Bypass) (Metasploit)
Mozilla Firefox 3.6.16 mChannel Use After Free Exploit
Mozilla Firefox 3.6.16 mChannel Use-After-Free Vulnerability
Mozilla Firefox 3.6.16 mChannel Use-After-Free
Immunity Canvas: FIREFOX_CHANNELREDIRECT