First published: Thu Jul 27 2006(Updated: )
Multiple vulnerabilities in Mozilla Firefox before 1.5.0.5, Thunderbird before 1.5.0.5, and SeaMonkey before 1.0.3 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via Javascript that leads to memory corruption, including (1) nsListControlFrame::FireMenuItemActiveEvent, (2) buffer overflows in the string class in out-of-memory conditions, (3) table row and column groups, (4) "anonymous box selectors outside of UA stylesheets," (5) stale references to "removed nodes," and (6) running the crypto.generateCRMFRequest callback on deleted context.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla SeaMonkey | =1.0.1 | |
Firefox | =1.5.0.3 | |
Mozilla SeaMonkey | =1.0 | |
Firefox | =1.5 | |
Mozilla SeaMonkey | =1.0.2 | |
Thunderbird | =1.5 | |
Thunderbird | =1.5.0.2 | |
Firefox | =1.5.0.2 | |
Mozilla SeaMonkey | =1.0 | |
Firefox | =1.5.0.4 | |
Firefox | =1.5.0.1 | |
Thunderbird | =1.5.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-3811 has a medium severity rating due to its potential for remote code execution and denial of service.
To remediate CVE-2006-3811, update Mozilla Firefox, Thunderbird, or SeaMonkey to versions 1.5.0.5, 1.5.0.5, or 1.0.3 respectively.
CVE-2006-3811 affects Mozilla Firefox versions prior to 1.5.0.5, Thunderbird versions before 1.5.0.5, and SeaMonkey versions earlier than 1.0.3.
The potential impacts of CVE-2006-3811 include crashing the browser and allowing attackers to execute arbitrary code.
While CVE-2006-3811 pertains to older software, it remains relevant for users of unpatched versions.