Vulnerability Name: | CVE-2011-1179 (CCN-66777) | ||||||||||||||||||||||||||||
Assigned: | 2011-04-07 | ||||||||||||||||||||||||||||
Published: | 2011-04-07 | ||||||||||||||||||||||||||||
Updated: | 2017-08-17 | ||||||||||||||||||||||||||||
Summary: | The SPICE Firefox plug-in (spice-xpi) 2.4, 2.3, 2.2, and possibly other versions allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via vectors related to (1) plugin/nsScriptablePeer.cpp and (2) plugin/plugin.cpp, which trigger multiple uses of an uninitialized pointer. | ||||||||||||||||||||||||||||
CVSS v3 Severity: | 7.3 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L)
| ||||||||||||||||||||||||||||
CVSS v2 Severity: | 5.1 Medium (CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P) 3.8 Low (Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
5.0 Medium (CCN Temporal CVSS v2 Vector: AV:N/AC:M/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
3.8 Low (REDHAT Temporal CVSS v2 Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P/E:U/RL:OF/RC:C)
| ||||||||||||||||||||||||||||
Vulnerability Type: | CWE-119 | ||||||||||||||||||||||||||||
Vulnerability Consequences: | Gain Privileges | ||||||||||||||||||||||||||||
References: | Source: MITRE Type: CNA CVE-2011-1179 Source: CCN Type: RHSA-2011-0426 Moderate: spice-xpi security update Source: CCN Type: RHSA-2011-0427 Moderate: spice-xpi security update Source: SECUNIA Type: Vendor Advisory 44060 Source: CCN Type: OSVDB ID: 73425 SPICE Plugin for Mozilla Firefox plugin/nsScriptablePeer.cpp Uninitialized Pointer DoS Source: CCN Type: OSVDB ID: 73426 SPICE Plugin for Mozilla Firefox plugin/plugin.cpp.cpp Uninitialized Pointer DoS Source: REDHAT Type: UNKNOWN RHSA-2011:0426 Source: REDHAT Type: UNKNOWN RHSA-2011:0427 Source: BID Type: UNKNOWN 47269 Source: CCN Type: BID-47269 spice-xpi Multiple Security Vulnerabilities Source: SECTRACK Type: UNKNOWN 1025304 Source: VUPEN Type: Vendor Advisory ADV-2011-0899 Source: MISC Type: Patch https://bugzilla.redhat.com/attachment.cgi?id=487006&action=diff Source: CCN Type: Red Hat Bugzilla Bug 689931 (CVE-2011-1179) CVE-2011-1179 spice-xpi: unitialized pointer writes possible when getting plugin properties Source: CONFIRM Type: Patch https://bugzilla.redhat.com/show_bug.cgi?id=689931 Source: XF Type: UNKNOWN spicexpi-pointer-privilege-escalation(66777) Source: XF Type: UNKNOWN spicexpi-pointer-privilege-escalation(66777) Source: CCN Type: RHSA-2011:0427-1 Security Advisory Moderate: spice-xpi security update | ||||||||||||||||||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration RedHat 1: Configuration RedHat 2: Configuration RedHat 3: Configuration RedHat 4: Configuration RedHat 5: Configuration RedHat 6: Denotes that component is vulnerable | ||||||||||||||||||||||||||||
Oval Definitions | |||||||||||||||||||||||||||||
| |||||||||||||||||||||||||||||
BACK |