First published: Fri Sep 15 2006(Updated: )
Multiple unspecified vulnerabilities in Firefox before 1.5.0.7, Thunderbird before 1.5.0.7, and SeaMonkey before 1.0.5 allow remote attackers to cause a denial of service (crash), corrupt memory, and possibly execute arbitrary code via unspecified vectors, some of which involve JavaScript, and possibly large images or plugin data.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla SeaMonkey | <=1.0.4 | |
Thunderbird | <=1.5.0.6 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-4571 is considered a high severity vulnerability due to its potential to cause denial of service and arbitrary code execution.
To mitigate CVE-2006-4571, upgrade to Mozilla Firefox version 1.5.0.7, Thunderbird version 1.5.0.7, or SeaMonkey version 1.0.5 or later.
CVE-2006-4571 allows remote attackers to potentially crash the application, corrupt memory and execute arbitrary code.
CVE-2006-4571 affects Firefox versions prior to 1.5.0.7, Thunderbird versions prior to 1.5.0.7, and SeaMonkey versions prior to 1.0.5.
Yes, some unspecified vectors related to JavaScript can be exploited to trigger the vulnerabilities in CVE-2006-4571.