Mozilla Firefox before 3.6.20, Thunderbird 2.x and 3.x before 3.1.12, SeaMonkey 1.x and 2.x, and possibly other products does not properly handle the RegExp.input property, which allows remote attackers to bypass the Same Origin Policy and read data from a different domain via a crafted web site, possibly related to a use-after-free.
History

No history.

cve-icon MITRE Information

Status: PUBLISHED

Assigner: mitre

Published: 2011-08-18T18:00:00

Updated: 2017-09-18T12:57:01

Reserved: 2011-08-01T00:00:00


Link: CVE-2011-2983

JSON object: View

cve-icon NVD Information

Status : Modified

Published: 2011-08-18T18:55:01.647

Modified: 2017-09-19T01:33:29.117


Link: CVE-2011-2983

JSON object: View

cve-icon Redhat Information

No data.

CWE