4.3

CVE-2006-6499

The js_dtoa function in Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 overwrites memory instead of exiting when the floating point precision is reduced, which allows remote attackers to cause a denial of service via any plugins that reduce the precision.

Daten sind bereitgestellt durch National Vulnerability Database (NVD)
MozillaFirefox Version >= 1.5 < 1.5.0.9
MozillaFirefox Version >= 2.0 < 2.0.0.1
MozillaSeamonkey Version < 1.0.7
MozillaThunderbird Version < 1.5.0.9
DebianDebian Linux Version3.1
DebianDebian Linux Version4.0
CanonicalUbuntu Linux Version5.10
CanonicalUbuntu Linux Version6.06 SwEditionlts
CanonicalUbuntu Linux Version6.10
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 13.71% 0.94
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')

The product contains an iteration or loop with an exit condition that cannot be reached, i.e., an infinite loop.

http://www.vupen.com/english/advisories/2008/0083
Third Party Advisory
Broken Link
http://secunia.com/advisories/23282
Third Party Advisory
Broken Link
http://secunia.com/advisories/23420
Third Party Advisory
Broken Link
http://secunia.com/advisories/23422
Third Party Advisory
Broken Link
http://secunia.com/advisories/23545
Third Party Advisory
Broken Link
http://secunia.com/advisories/23589
Third Party Advisory
Broken Link
http://secunia.com/advisories/23591
Third Party Advisory
Broken Link
http://secunia.com/advisories/23614
Third Party Advisory
Broken Link
http://secunia.com/advisories/23672
Third Party Advisory
Broken Link
http://secunia.com/advisories/23692
Third Party Advisory
Broken Link
http://secunia.com/advisories/23988
Third Party Advisory
Broken Link
http://secunia.com/advisories/24078
Third Party Advisory
Broken Link
http://secunia.com/advisories/24390
Third Party Advisory
Broken Link
http://security.gentoo.org/glsa/glsa-200701-02.xml
Third Party Advisory
Broken Link
http://securitytracker.com/id?1017398
Third Party Advisory
Broken Link
VDB Entry
http://securitytracker.com/id?1017405
Third Party Advisory
Broken Link
VDB Entry
http://securitytracker.com/id?1017406
Third Party Advisory
Broken Link
VDB Entry
http://www.kb.cert.org/vuls/id/427972
Third Party Advisory
US Government Resource
http://www.securityfocus.com/bid/21668
Third Party Advisory
Broken Link
VDB Entry
http://www.us-cert.gov/cas/techalerts/TA06-354A.html
Third Party Advisory
US Government Resource
Broken Link
http://www.vupen.com/english/advisories/2006/5068
Third Party Advisory
Broken Link
http://www.vupen.com/english/advisories/2007/1124
Third Party Advisory
Broken Link