First published: Tue Nov 07 2006(Updated: )
** DISPUTED ** Firefox 1.5.0.7 on Kubuntu Linux allows remote attackers to cause a denial of service (crash) via a long URL in an A tag. NOTE: this issue has been disputed by several vendors, who could not reproduce the report. In addition, the scope of the impact - system freeze - suggests an issue that is not related to Firefox. Due to this impact, CVE concurs with the dispute.
Credit: cve@mitre.org cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Firefox | =1.5.0.7 | |
=1.5.0.7 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-5783 is considered a denial of service vulnerability that could cause Firefox to crash.
To address CVE-2006-5783, it is recommended to update to a later version of Firefox that does not have this vulnerability.
CVE-2006-5783 specifically affects Mozilla Firefox version 1.5.0.7 on Kubuntu Linux.
Yes, CVE-2006-5783 can be exploited remotely through malicious A tags with long URLs.
CVE-2006-5783 has been disputed by several vendors, as they could not reproduce the reported denial of service behavior.