CVE-2011-3659 EXPLOIT
9.3
HIGH · CVSS 2.0 · EPSS 36.8% (pctl 98)
Patch early
A public exploit exists.
Description
Use-after-free vulnerability in Mozilla Firefox before 3.6.26 and 4.x through 9.0, Thunderbird before 3.1.18 and 5.0 through 9.0, and SeaMonkey before 2.7 might allow remote attackers to execute arbitrary code via vectors related to incorrect AttributeChildRemoved notifications that affect access to removed nsDOMAttribute child nodes.
Scoring
| CVSS | 9.3 (HIGH, v2.0) |
|---|---|
| Vector | AV:N/AC:M/Au:N/C:C/I:C/A:C |
| EPSS | 36.82% — more likely to be exploited than 98% of all CVEs |
| Weakness | CWE-416 |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2012-02-01 |
| Last modified | 2026-06-16 |
Affected (7)
| Vendor | Product |
|---|---|
| mozilla | firefox |
| mozilla | seamonkey |
| mozilla | thunderbird |
| opensuse | opensuse |
| suse | linux enterprise desktop |
| suse | linux enterprise server |
| suse | linux enterprise software development kit |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | Mozilla Firefox 8/9 - 'AttributeChildRemoved()' Use-After-Free (Metasploit) | 2012-05-13 |
References
- http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00003.html
- http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00007.html
- http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00011.html
- http://www.mandriva.com/security/advisories?name=MDVSA-2012:013
- http://www.mozilla.org/security/announce/2012/mfsa2012-04.html
- https://bugzilla.mozilla.org/show_bug.cgi?id=708198
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14697
- http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00003.html
- http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00007.html
- http://lists.opensuse.org/opensuse-security-announce/2012-02/msg00011.html
- http://www.mandriva.com/security/advisories?name=MDVSA-2012:013
- http://www.mozilla.org/security/announce/2012/mfsa2012-04.html
- https://bugzilla.mozilla.org/show_bug.cgi?id=708198
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A14697
→ the Explorer · watch your stack · NVD