CVE-2006-1993
Mozilla Firefox 1.5.0.2, when designMode is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain Javascript that is not properly handled by the contentWindow.focus method in an iframe, which…
Does this matter?
EPSS puts the probability of exploitation in the next 30 days at 54.0%, higher than 99% of all known CVEs. Patch or mitigate before the next change window.
Description
Mozilla Firefox 1.5.0.2, when designMode is enabled, allows remote attackers to cause a denial of service and possibly execute arbitrary code via certain Javascript that is not properly handled by the contentWindow.focus method in an iframe, which causes a reference to a deleted controller context object. NOTE: this was originally claimed to be a buffer overflow in (1) js320.dll and (2) xpcom_core.dll, but the vendor disputes this claim.
- CVSS 2.0
- 5.1 MEDIUMAV:N/AC:H/Au:N/C:P/I:P/A:P
- EPSS
- 54.00% probability · 99th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-399
- Affected
- mozilla/firefox
- Source
- secalert@redhat.com
References
- http://secunia.com/advisories/19802Patch, Vendor Advisory
- http://secunia.com/advisories/20015Vendor Advisory
- http://secunia.com/advisories/20019Vendor Advisory
- http://secunia.com/advisories/20070Vendor Advisory
- http://secunia.com/advisories/20214Vendor Advisory
- http://secunia.com/advisories/22066Vendor Advisory
- http://securityreason.com/securityalert/780
- http://securitytracker.com/id?1015981Exploit
- http://www.debian.org/security/2006/dsa-1053
- http://www.debian.org/security/2006/dsa-1055
- http://www.gentoo.org/security/en/glsa/glsa-200605-06.xml
- http://www.kb.cert.org/vuls/id/866300Third Party Advisory, US Government Resource
- http://www.mozilla.org/security/announce/2006/mfsa2006-30.htmlVendor Advisory
- http://www.securident.com/vuln/ff.txtExploit
- http://www.securityfocus.com/archive/1/431878/100/0/threaded
- http://www.securityfocus.com/archive/1/434524/100/0/threaded
- http://www.securityfocus.com/archive/1/446658/100/200/threaded
- http://www.securityfocus.com/bid/17671Exploit, Patch
- http://www.vupen.com/english/advisories/2006/1614Vendor Advisory
- http://www.vupen.com/english/advisories/2006/1922Vendor Advisory
- http://www.vupen.com/english/advisories/2006/3748Vendor Advisory
- http://www.vupen.com/english/advisories/2008/0083Vendor Advisory
- https://exchange.xforce.ibmcloud.com/vulnerabilities/25994
- https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1790
- http://secunia.com/advisories/19802Patch, Vendor Advisory
- http://secunia.com/advisories/20015Vendor Advisory
- http://secunia.com/advisories/20019Vendor Advisory
- http://secunia.com/advisories/20070Vendor Advisory
- http://secunia.com/advisories/20214Vendor Advisory
- http://secunia.com/advisories/22066Vendor Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.