Description
Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors that trigger a compartment mismatch associated with the nsDOMMessageEvent::GetData function, and unknown other vectors.
Published: 2011-12-21
Score: 10.0 Critical
EPSS: 3.9% Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Analysis and contextual insights are available on OpenCVE Cloud.

Remediation

No vendor fix or workaround currently provided.

Additional remediation guidance may be available on OpenCVE Cloud.

Tracking

Sign in to view the affected projects.

Advisories
Source ID Title
EUVD EUVD EUVD-2011-3619 Multiple unspecified vulnerabilities in the browser engine in Mozilla Firefox 4.x through 8.0, Thunderbird 5.0 through 8.0, and SeaMonkey before 2.6 allow remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via vectors that trigger a compartment mismatch associated with the nsDOMMessageEvent::GetData function, and unknown other vectors.
Ubuntu USN Ubuntu USN USN-1306-1 Firefox vulnerabilities
Ubuntu USN Ubuntu USN USN-1343-1 Thunderbird vulnerabilities
References
Link Providers
http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00001.html cve-icon cve-icon
http://lists.opensuse.org/opensuse-security-announce/2012-01/msg00009.html cve-icon cve-icon
http://osvdb.org/77952 cve-icon cve-icon
http://secunia.com/advisories/47302 cve-icon cve-icon
http://secunia.com/advisories/47334 cve-icon cve-icon
http://secunia.com/advisories/49055 cve-icon cve-icon
http://www.mandriva.com/security/advisories?name=MDVSA-2011:192 cve-icon cve-icon
http://www.mozilla.org/security/announce/2011/mfsa2011-53.html cve-icon cve-icon
http://www.securitytracker.com/id?1026445 cve-icon cve-icon
http://www.securitytracker.com/id?1026446 cve-icon cve-icon
http://www.securitytracker.com/id?1026447 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=562442 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=679494 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=679986 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=680687 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=682252 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=685186 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=685321 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=686107 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=688364 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=688974 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=689892 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=690376 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=691746 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=691873 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=693143 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=693144 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=694200 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=696579 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=697255 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=700512 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=701248 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=701637 cve-icon cve-icon
https://bugzilla.mozilla.org/show_bug.cgi?id=706249 cve-icon cve-icon
https://exchange.xforce.ibmcloud.com/vulnerabilities/71908 cve-icon cve-icon
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14226 cve-icon cve-icon
https://www.cve.org/CVERecord?id=CVE-2011-3660 cve-icon
History

Wed, 28 May 2025 14:45:00 +0000

Type Values Removed Values Added
References

Thu, 22 May 2025 04:45:00 +0000


Subscriptions

Mozilla Firefox Seamonkey Thunderbird
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2024-08-06T23:46:01.330Z

Reserved: 2011-09-23T00:00:00.000Z

Link: CVE-2011-3660

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Modified

Published: 2011-12-21T04:02:00.927

Modified: 2026-04-29T01:13:23.040

Link: CVE-2011-3660

cve-icon Redhat

Severity : Critical

Publid Date: 2011-12-20T00:00:00Z

Links: CVE-2011-3660 - Bugzilla

cve-icon OpenCVE Enrichment

No data.

Weaknesses