Lucene search

K
debiancveDebian Security Bug TrackerDEBIANCVE:CVE-2006-0748
HistoryApr 14, 2006 - 10:02 a.m.

CVE-2006-0748

2006-04-1410:02:00
Debian Security Bug Tracker
security-tracker.debian.org
19

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.228

Percentile

96.5%

Mozilla Firefox and Thunderbird 1.x before 1.5.0.2 and 1.0.x before 1.0.8, Mozilla Suite before 1.7.13, and SeaMonkey before 1.0.1 allows remote attackers to execute arbitrary code via “an invalid and non-sensical ordering of table-related tags” that results in a negative array index.

CVSS2

9.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:M/Au:N/C:C/I:C/A:C

EPSS

0.228

Percentile

96.5%