oss-sec mailing list archives

CVE request: firefox 2.0.14 ( Crash in JavaScript garbage collector)


From: Hanno Böck <hanno () hboeck de>
Date: Thu, 17 Apr 2008 10:45:49 +0200

Please assign a cve for 
http://www.mozilla.org/projects/security/known-vulnerabilities.html#firefox2.0.0.14
http://www.mozilla.org/security/announce/2008/mfsa2008-20.html

And again, are pure browser crashers considered security relevant? I'd do so, 
as e.g. placing a crashing gif on e.g. some popular wiki could cause much 
trouble:
http://www.securityfocus.com/bid/27243
(I think it's still unfixed)

-- 
Hanno Böck              Blog:           http://www.hboeck.de/
GPG: 3DBD3B20           Jabber/Mail:    hanno () hboeck de

Attachment: signature.asc
Description: This is a digitally signed message part.


Current thread: