Mozilla Firefox 3.0.8 Zero Buffer Check Memory Exhaustion and Leaking

Proof of Concept

Note: Mozilla 3.0.8 Exhaust System Memory with Zero Check on Buffer Supplied to any Event or Object.

This POC has been designed with minimum object usage. The Loop is just allocating buffer but the objects instance is Failed to handle the buffer there by leading memory exhaustion. Firefox will not get affected when a simple script buffer is allocated until some event or object is executed with it.


Mozilla Firefox 3.0.8 Zero Buffer Check Memory Exhaustion and LeakingTest POC.


Aditya K Sood
(C) SecNiche Security


Version Tested:

Mozilla/5.0 (Windows; U; Windows NT 5.1; en-US; rv:1.9.0.5)
Gecko/2008120122 Firefox/3.0.8