Multiple vulnerabilities in the layout engine for Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, Thunderbird 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2 allow remote attackers to cause a denial of service (crash) via vectors related to dangling pointers, heap corruption, signed/unsigned, and other issues.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Gentoo Linux | — | Upgrade net-libs/xulrunner.Upgrade mail-client/mozilla-thunderbird.Upgrade www-client/seamonkey.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade www-client/mozilla-firefox-bin.Upgrade www-client/mozilla-firefox.Upgrade www-client/seamonkey-bin. | Oct 30, 2017 | May 31, 2007 |
| Mfsa2007 12 | — | Upgrade to Mozilla Firefox version 2.0.0.4Upgrade to Mozilla Firefox version 1.5.0.12 | Jun 14, 2012 | May 31, 2007 |
| Mozilla Seamonkey | — | Upgrade to Mozilla SeaMonkey version 1.1.2Upgrade to Mozilla SeaMonkey version 1.0.9 | Feb 3, 2012 | May 31, 2007 |
| Mozilla Thunderbird | — | Upgrade to Mozilla Thunderbird version 1.5.0.12Upgrade to Mozilla Thunderbird version 2.0.0.4 | Feb 22, 2012 | May 31, 2007 |
| Oracle_linux | — | Upgrade firefoxUpgrade devhelpUpgrade yelpUpgrade devhelp-develUpgrade firefox-devel | Oct 16, 2024 | Jun 1, 2007 |
| Suse | — | Upgrade mozilla-develUpgrade MozillaFirefox-translationsUpgrade seamonkey-dom-inspectorUpgrade mozilla-ircUpgrade MozillaFirefoxUpgrade mozilla-venkmanUpgrade mozilla-csUpgrade seamonkey-spellcheckerUpgrade seamonkey-ircUpgrade MozillaThunderbirdUpgrade mozilla-deatUpgrade mozilla-huUpgrade mozilla-mailUpgrade suse-releaseUpgrade mozilla-calendarUpgrade MozillaThunderbird-translationsUpgrade mozilla-dom-inspectorUpgrade seamonkey-mailUpgrade mozillaUpgrade seamonkeyUpgrade seamonkey-venkman | Feb 17, 2015 | May 31, 2007 |
| Ubuntu | — | Upgrade mozilla-thunderbirdUpgrade firefox | Nov 8, 2024 | Jun 1, 2007 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub