js/src/jstracer.cpp in the Just-in-time (JIT) JavaScript compiler (aka TraceMonkey) in Mozilla Firefox 3.5 before 3.5.1 allows remote attackers to execute arbitrary code via certain use of the escape function that triggers access to uninitialized memory locations, as originally demonstrated by a document containing P and FONT elements.
References
Configurations
Information
Published : 2009-07-15 08:30
Updated : 2017-09-18 18:29
NVD link : CVE-2009-2477
Mitre link : CVE-2009-2477
JSON object : View
CWE
CWE-94
Improper Control of Generation of Code ('Code Injection')
Products Affected
mozilla
- firefox