Lucene search

K
ubuntucveUbuntu.comUB:CVE-2008-4062
HistorySep 24, 2008 - 12:00 a.m.

CVE-2008-4062

2008-09-2400:00:00
ubuntu.com
ubuntu.com
28

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.028

Percentile

90.7%

Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.17 and
3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12
allow remote attackers to cause a denial of service (memory corruption and
application crash) or possibly execute arbitrary code via vectors related
to the JavaScript engine and (1) misinterpretation of the characteristics
of Namespace and QName in jsxml.c, (2) misuse of signed integers in the
nsEscapeCount function in nsEscape.cpp, and (3) interaction of JavaScript
garbage collection with certain use of an NPObject in the
nsNPObjWrapper::GetNewOrUsed function in nsJSNPRuntime.cpp.

OSVersionArchitecturePackageVersionFilename
ubuntu6.06noarchfirefox< 1.5.dfsg+1.5.0.15~prepatch080614e-0ubuntu3UNKNOWN
ubuntu7.04noarchfirefox< 2.0.0.17+0nobinonly-0ubuntu0.7.4UNKNOWN
ubuntu7.10noarchfirefox< 2.0.0.17+1nobinonly-0ubuntu0.7.10UNKNOWN
ubuntu8.04noarchfirefox< 2.0.0.17+1nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu10.04noarchfirefox< 3.0.3+build1+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu10.10noarchfirefox< 3.0.3+build1+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu11.04noarchfirefox< 3.0.3+build1+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu8.04noarchfirefox-3.0< 3.0.3+build1+nobinonly-0ubuntu0.8.04.1UNKNOWN
ubuntu8.10noarchfirefox-3.0< 3.0.3+build1+nobinonly-0ubuntu1UNKNOWN
ubuntu9.04noarchfirefox-3.0< 3.0.3+build1+nobinonly-0ubuntu1UNKNOWN
Rows per page:
1-10 of 331

CVSS2

10

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

COMPLETE

Integrity Impact

COMPLETE

Availability Impact

COMPLETE

AV:N/AC:L/Au:N/C:C/I:C/A:C

EPSS

0.028

Percentile

90.7%