Firefox Array.reduceRight Integer Overflow

Strike ID:
E11-4tv01
CVSS:
10.0 (AV:N/AC:L/Au:N/C:C/I:C/A:C)
False Positive:
f
Variants:
1
Year:
2011

Description

This strike exploits an integer overflow vulnerability in Mozilla Firefox <= 3.6.18 that occurs when using the reduceRight method on an array with a very large length.

CVE

Bid