CVSS2
Attack Vector
NETWORK
Attack Complexity
MEDIUM
Authentication
NONE
Confidentiality Impact
NONE
Integrity Impact
NONE
Availability Impact
PARTIAL
AV:N/AC:M/Au:N/C:N/I:N/A:P
EPSS
Percentile
99.7%
As part of the Firefox 2.0.0.8 update releases Mozilla developers fixed many bugs to improve the stability of the product. Some of these crashes showed evidence of memory corruption under certain circumstances and we presume that with enough effort at least some of these could be exploited to run arbitrary code.
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5339
cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2007-5340
bugzilla.mozilla.org/buglist.cgi?bug_id=309322,330563,341858,344064,348126,354645,361745,362901,378670,379799,382376,384105,386914,387033,387460,387844,391974,392285,393770,394014,394418
bugzilla.mozilla.org/buglist.cgi?bug_id=372309,387955,390078,393537