Mozilla Firefox 64-Bit SetTextInternal Heap Buffer Overflow
- Published: 23 Jun 2010
CVE-2010-1196
Share
Type
Severity
Affected products
Date
CVE Reference
A heap buffer overflow vulnerability was discovered which is caused by an integer overflow in nsGenericDOMDataNode::SetTextInternal().
Due to the amount of data needed to trigger the vulnerability (> 8 gigabytes), this is only exploitable on 64-bit systems. This vulnerability was tested on Ubuntu AMD64 with the default install of Firefox.
See this white paper for more details on vulnerabilities specific to 64bit platforms.