Double free vulnerability in the getRawDER function for nsIX509Cert in Firefox allows remote attackers to cause a denial of service (hang) and possibly execute arbitrary code via certain Javascript code.Referenceshttp://www.mandriva.com/security/advisories?name=MDKSA-2006:145https://usn.ubuntu.com/296-1/http://www.ubuntu.com/usn/usn-361-1https://bugzilla.mozilla.org/show_bug.cgi?id=321598http://www.redhat.com/support/errata/RHSA-2006-0594.htmlhttp://secunia.com/advisories/21336http://www.redhat.com/support/errata/RHSA-2006-0610.htmlhttp://secunia.com/advisories/22247http://www.us.debian.org/security/2006/dsa-1191http://rhn.redhat.com/errata/RHSA-2006-0609.htmlhttp://www.debian.org/security/2006/dsa-1210http://secunia.com/advisories/22849http://secunia.com/advisories/21532http://secunia.com/advisories/21270http://secunia.com/advisories/21631https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11065http://www.debian.org/security/2006/dsa-1192http://www.redhat.com/support/errata/RHSA-2006-0611.htmlhttp://secunia.com/advisories/22342http://secunia.com/advisories/21269http://www.redhat.com/support/errata/RHSA-2006-0578.htmlhttp://www.mandriva.com/security/advisories?name=MDKSA-2006:143http://secunia.com/advisories/22299