Integer overflow in the MathML component in Mozilla Firefox before 2.0.0.17 and 3.x before 3.0.2, Thunderbird before 2.0.0.17, and SeaMonkey before 1.1.12 allows remote attackers to cause a denial of service (memory corruption and application crash) or possibly execute arbitrary code via an mtd element with a large integer value in the rowspan attribute, related to the layout engine.
CVSS Details
- CVSS 3.1 Base Score: 9.8
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Centos_linux | — | Upgrade seamonkeyUpgrade devhelp-develUpgrade seamonkey-develUpgrade devhelpUpgrade seamonkey-js-debuggerUpgrade seamonkey-mailUpgrade seamonkey-chatUpgrade firefoxUpgrade seamonkey-dom-inspectorUpgrade thunderbird | Dec 1, 2016 | Sep 24, 2008 |
| Freebsd | — | Upgrade linux-seamonkey-develUpgrade linux-firefoxUpgrade seamonkeyUpgrade firefoxUpgrade linux-thunderbirdUpgrade linux-seamonkeyUpgrade linux-firefox-develUpgrade thunderbirdUpgrade linux-flockUpgrade flock | Dec 10, 2025 | Sep 24, 2008 |
| Gentoo Linux | — | Upgrade www-client/icecat.Upgrade www-client/seamonkey.Upgrade www-client/seamonkey-bin.Upgrade www-client/mozilla-firefox.Upgrade www-client/firefox.Upgrade net-libs/xulrunner.Upgrade dev-libs/nss.Upgrade mail-client/thunderbird-bin.Upgrade mail-client/mozilla-thunderbird-bin.Upgrade www-client/mozilla-firefox-bin.Upgrade mail-client/mozilla-thunderbird.Upgrade mail-client/thunderbird.Upgrade net-libs/xulrunner-bin.Upgrade www-client/firefox-bin. | Oct 30, 2017 | Sep 24, 2008 |
| Mfsa2008 42 | — | Upgrade to Mozilla Firefox version 2.0.0.17Upgrade to Mozilla Firefox version 3.0.2 | Jun 14, 2012 | Sep 24, 2008 |
| Mozilla Seamonkey | — | Upgrade to Mozilla SeaMonkey version 1.1.12 | Feb 3, 2012 | Sep 24, 2008 |
| Mozilla Thunderbird | — | Upgrade to Mozilla Thunderbird version 2.0.0.17 | Feb 22, 2012 | Sep 24, 2008 |
| Oracle_linux | — | Upgrade nss-develUpgrade devhelpUpgrade xulrunner-develUpgrade nssUpgrade xulrunner-devel-unstableUpgrade xulrunnerUpgrade firefoxUpgrade devhelp-develUpgrade nss-toolsUpgrade nss-pkcs11-develUpgrade yelp | Oct 16, 2024 | Sep 24, 2008 |
| Suse | — | Upgrade MozillaFirefoxUpgrade seamonkey-spellcheckerUpgrade mozilla-xulrunner190-32bitUpgrade suse-releaseUpgrade mozilla-xulrunner190Upgrade mozilla-venkmanUpgrade mozilla-develUpgrade mozilla-xulrunner181-l10nUpgrade MozillaThunderbirdUpgrade MozillaFirefox-translationsUpgrade seamonkey-ircUpgrade mozilla-calendarUpgrade mozilla-xulrunner190-gnomevfs-64bitUpgrade mozilla-ircUpgrade mozilla-mailUpgrade mozilla-xulrunner181-32bitUpgrade mozilla-huUpgrade mozilla-deatUpgrade mozilla-csUpgrade mozilla-xulrunner190-translations-32bitUpgrade mozilla-xulrunner190-gnomevfs-32bitUpgrade mozilla-xulrunner190-develUpgrade gecko-sdkUpgrade MozillaThunderbird-develUpgrade mozillaUpgrade seamonkey-dom-inspectorUpgrade mozilla-xulrunner181Upgrade mozilla-xulrunner181-develUpgrade seamonkey-venkmanUpgrade mozilla-xulrunner190-gnomevfsUpgrade mozilla-xulrunner190-64bitUpgrade seamonkey-mailUpgrade seamonkeyUpgrade mozilla-xulrunner181-64bitUpgrade MozillaThunderbird-translationsUpgrade mozilla-xulrunner190-translations-64bitUpgrade mozilla-xulrunner190-translationsUpgrade mozilla-dom-inspector | Feb 17, 2015 | Sep 24, 2008 |
| Ubuntu | — | Upgrade firefoxUpgrade xulrunner-1.9Upgrade mozilla-thunderbirdUpgrade thunderbirdUpgrade firefox-3.0 | Nov 8, 2024 | Sep 24, 2008 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub