[Forgot Password]
Login  Register Subscribe

23631

 
 

115038

 
 

96078

 
 

909

 
 

78009

 
 

109

Paid content will be excluded from the download.


Download | Alert*
CVE
view XML

CVE-2006-4565

Date: (C)2006-09-15   (M)2017-10-12
 
CVSS Score: 9.3Access Vector: NETWORK
Exploitability Subscore: 8.6Access Complexity: MEDIUM
Impact Subscore: 10.0Authentication: NONE
 Confidentiality: COMPLETE
 Integrity: COMPLETE
 Availability: COMPLETE











Heap-based buffer overflow in Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via a JavaScript regular expression with a "minimal quantifier."

Reference:
SECTRACK-1016846
SECTRACK-1016847
SECTRACK-1016848
BID-20042
20060901-01-P
http://www.securityfocus.com/archive/1/archive/1/446140/100/0/threaded
SECUNIA-21906
SECUNIA-21915
SECUNIA-21916
SECUNIA-21939
SECUNIA-21940
SECUNIA-21949
SECUNIA-21950
SECUNIA-22001
SECUNIA-22025
SECUNIA-22036
SECUNIA-22055
SECUNIA-22056
SECUNIA-22066
SECUNIA-22074
SECUNIA-22088
SECUNIA-22195
SECUNIA-22210
SECUNIA-22247
SECUNIA-22274
SECUNIA-22299
SECUNIA-22342
SECUNIA-22391
SECUNIA-22422
SECUNIA-22849
SECUNIA-24711
ADV-2006-3617
ADV-2006-3748
ADV-2007-1198
ADV-2008-0083
DSA-1191
DSA-1192
DSA-1210
GLSA-200609-19
GLSA-200610-01
GLSA-200610-04
HPSBUX02153
MDKSA-2006:168
MDKSA-2006:169
RHSA-2006:0675
RHSA-2006:0676
RHSA-2006:0677
SSRT061181
SUSE-SA:2006:054
USN-350-1
USN-351-1
USN-352-1
USN-354-1
USN-361-1
http://support.avaya.com/elmodocs2/security/ASA-2006-224.htm
http://www.mozilla.org/security/announce/2006/mfsa2006-57.html
https://issues.rpath.com/browse/RPL-640
mozilla-javascript-expression-bo(28955)

CPE    3
cpe:/a:mozilla:firefox:1.5.0.6
cpe:/a:mozilla:thunderbird:1.5.0.6
cpe:/a:mozilla:seamonkey:1.0.4
CWE    1
CWE-119

© 2013 SecPod Technologies