CVE-2006-5748
Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via…
Does this matter?
Lower severity and a low EPSS score (5.67%). Track it; it rarely justifies an emergency change on its own.
Description
Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors that trigger memory corruption.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:N/I:N/A:P
- EPSS
- 5.67% probability · 93th percentile
- CISA KEV
- Not listed
- Affected
- mozilla/firefox · mozilla/seamonkey · mozilla/thunderbird
- Source
- secalert@redhat.com
References
- ftp://patches.sgi.com/support/free/security/advisories/20061101-01-PPatch
- http://rhn.redhat.com/errata/RHSA-2006-0733.htmlPatch, Vendor Advisory
- http://rhn.redhat.com/errata/RHSA-2006-0734.htmlPatch, Vendor Advisory
- http://rhn.redhat.com/errata/RHSA-2006-0735.htmlPatch, Vendor Advisory
- http://secunia.com/advisories/22066
- http://secunia.com/advisories/22722Patch, Vendor Advisory
- http://secunia.com/advisories/22727Patch, Vendor Advisory
- http://secunia.com/advisories/22737Patch, Vendor Advisory
- http://secunia.com/advisories/22763Patch, Vendor Advisory
- http://secunia.com/advisories/22770Patch, Vendor Advisory
- http://secunia.com/advisories/22774Patch, Vendor Advisory
- http://secunia.com/advisories/22815
- http://secunia.com/advisories/22817Patch, Vendor Advisory
- http://secunia.com/advisories/22929Patch, Vendor Advisory
- http://secunia.com/advisories/22965Patch, Vendor Advisory
- http://secunia.com/advisories/22980Patch, Vendor Advisory
- http://secunia.com/advisories/23009Patch, Vendor Advisory
- http://secunia.com/advisories/23013Patch, Vendor Advisory
- http://secunia.com/advisories/23197Patch, Vendor Advisory
- http://secunia.com/advisories/23202Patch, Vendor Advisory
- http://secunia.com/advisories/23235Patch, Vendor Advisory
- http://secunia.com/advisories/23263Vendor Advisory
- http://secunia.com/advisories/23287Vendor Advisory
- http://secunia.com/advisories/23297
- http://secunia.com/advisories/24711
- http://secunia.com/advisories/27603
- http://security.gentoo.org/glsa/glsa-200612-06.xmlPatch
- http://security.gentoo.org/glsa/glsa-200612-07.xmlPatch
- http://security.gentoo.org/glsa/glsa-200612-08.xml
- http://securitytracker.com/id?1017177Patch
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.