CVE-2011-2998 PUBLISHED CVSS 10 CRITICAL

Integer underflow in Mozilla Firefox 3.6.x before 3.6.23 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via JavaScript code containing a large RegExp expression.

EPSS 2.77% · 85.9th percentile

Risk Scores

CVSS v2.0
10
EPSS Score
2.77%
85.9th percentile

Affected Products

VendorProductVersions
n/an/an/a
mozillafirefox3.6.2, 3.6.3, 3.6.4

Timeline

References

Open in Interactive Console →