PT-2007-6408 · Mozilla+1 · Firefox+3

Published

2007-10-19

·

Updated

2023-02-13

·

CVE-2007-5339

CVSS v2.0

4.3

Medium

VectorAV:N/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions: Mozilla Firefox versions prior to 2.0.0.8 Thunderbird versions prior to 2.0.0.8 SeaMonkey versions prior to 1.1.5
Description: The issue allows remote attackers to cause a denial of service, resulting in a crash, via crafted HTML that triggers memory corruption or assert errors.
Recommendations: For Mozilla Firefox versions prior to 2.0.0.8, update to version 2.0.0.8 or later. For Thunderbird versions prior to 2.0.0.8, update to version 2.0.0.8 or later. For SeaMonkey versions prior to 1.1.5, update to version 1.1.5 or later.

Fix

DoS

RCE

Weakness Enumeration

Related Identifiers

CVE-2007-5339
DSA-1391-1
DSA-1392-1
DSA-1396-1
DSA-1401-1
DTSA-69-1
DTSA-71-1
DTSA-80-1
HPSBUX02153
RHSA-2007:0979
RHSA-2007:0980
RHSA-2007:0981
RHSA-2007_0979
RHSA-2007_0980
RHSA-2007_0981

Affected Products

Firefox
Red Hat
Seamonkey
Thunderbird