Mozilla Firefox NodeIterator Remote Code Execution VulnerabilityZDI-10-130: July 20th, 2010
TippingPoint™ IPS Customer ProtectionTippingPoint IPS customers are protected against this vulnerability by Digital Vaccine protection filter ID 10006. For further product information on the TippingPoint IPS:
This vulnerability allows remote attackers to execute arbitrary code on vulnerable installations of Mozilla Firefox. User interaction is required to exploit this vulnerability in that the victim must visit a malicious page or open a malicious file.
Vendor ResponseMozilla Firefox has issued an update to correct this vulnerability. More details can be found at:
2010-03-12 - Vulnerability reported to vendor
2010-07-20 - Coordinated public release of advisory
CreditThis vulnerability was discovered by: