CVE-2010-0167 describes a memory corruption vulnerability in the browser engine of Mozilla Firefox, Thunderbird, and SeaMonkey versions prior to their respective patches. This flaw, rated with a critical CVSS score of 9.3, could allow remote attackers to cause a denial of service through application crashes and potentially execute arbitrary code. The attack requires medium complexity and no authentication. While there is an ExploitDB entry for multiple memory corruption vulnerabilities, there is no evidence of active exploitation, Metasploit modules, or significant community discussion for this specific CVE.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
3.0CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:3.0:*:*:*:*:*:*:* | ||
3.0.1CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:3.0.1:*:*:*:*:*:*:* | ||
3.0.10CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:3.0.10:*:*:*:*:*:*:* | ||
3.0.11CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:3.0.11:*:*:*:*:*:*:* | ||
3.0.12CPE matchmatch criteria | cpe:2.3:a:mozilla:firefox:3.0.12:*:*:*:*:*:*:* |
CVSS version used by this source: 2.0
AV:N/AC:M/Au:N/C:C/I:C/A:C
The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.1 Mastodon, and 0.2 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.1 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.