PT-2006-1366 · Mozilla+2 · Firefox+3

Igor Bukanov

·

Published

2006-02-02

·

Updated

2018-10-19

·

CVE-2006-0292

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Mozilla and Firefox versions prior to 1.5.1
Description The issue is related to the Javascript interpreter in Mozilla and Firefox, which does not properly dereference objects. This can be exploited by remote attackers to cause a denial of service, resulting in a crash, or to execute arbitrary code. The attack vectors are related to garbage collection, although the specifics are not detailed.
Recommendations For versions prior to 1.5.1, update to version 1.5.1 or later to resolve the issue.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2006-0292
DSA-1044-1
DSA-1046-1
DSA-1051-1
HPSBUX02122
RHSA-2006:0200
RHSA-2006:0330
RHSA-2006_0200
RHSA-2006_0330

Affected Products

Firefox
Hp-Ux
Mozilla Firefox
Red Hat