Closed Bug 272136 Opened 20 years ago Closed 20 years ago

Mozilla Firefox Infinite Array Sort Denial Of Service Vulnerability

Categories

(Core :: JavaScript Engine, defect)

x86
Windows ME
defect
Not set
critical

Tracking

()

VERIFIED DUPLICATE of bug 271716

People

(Reporter: mozillabugs.3.maxchee, Unassigned)

Details

User-Agent:       Mozilla/5.0 (Windows; U; Win 9x 4.90; en-US; rv:1.7.5) Gecko/20041107 Firefox/1.0
Build Identifier: Mozilla/5.0 (Windows; U; Win 9x 4.90; en-US; rv:1.7.5) Gecko/20041107 Firefox/1.0

More details here:
http://www.securityfocus.com/bid/11752/exploit/

The JS code causes crash.

Reproducible: Always
Steps to Reproduce:
The code will crash Firefox 1.0 Final.

*** This bug has been marked as a duplicate of 271716 ***
Status: UNCONFIRMED → RESOLVED
Closed: 20 years ago
Resolution: --- → DUPLICATE
clearing security flag, since a) this is public b) the bug this is a duplicate
of is public
Group: security
v
Status: RESOLVED → VERIFIED
You need to log in before you can comment on or make changes to this bug.