Lucene search

K
cveRedhatCVE-2006-4566
HistorySep 15, 2006 - 6:07 p.m.

CVE-2006-4566

2006-09-1518:07:00
redhat
web.nvd.nist.gov
52
mozilla firefox
thunderbird
seamonkey
cve-2006-4566
dos
vulnerability

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.2

Confidence

Low

EPSS

0.967

Percentile

99.6%

Mozilla Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allows remote attackers to cause a denial of service (crash) via a malformed JavaScript regular expression that ends with a backslash in an unterminated character set (“[\”), which leads to a buffer over-read.

Affected configurations

Nvd
Node
mozillafirefoxRange1.5.0.6
OR
mozillaseamonkeyRange1.0.4
OR
mozillathunderbirdRange1.5.0.6
VendorProductVersionCPE
mozillafirefox*cpe:2.3:a:mozilla:firefox:*:*:*:*:*:*:*:*
mozillaseamonkey*cpe:2.3:a:mozilla:seamonkey:*:*:*:*:*:*:*:*
mozillathunderbird*cpe:2.3:a:mozilla:thunderbird:*:*:*:*:*:*:*:*

References

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

AI Score

6.2

Confidence

Low

EPSS

0.967

Percentile

99.6%