First published: Wed Dec 20 2006(Updated: )
Use-after-free vulnerability in the LiveConnect bridge code for Mozilla Firefox 2.x before 2.0.0.1, 1.5.x before 1.5.0.9, Thunderbird before 1.5.0.9, and SeaMonkey before 1.0.7 allows remote attackers to cause a denial of service (crash) via unknown vectors.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Thunderbird | =1.5.0.7 | |
Thunderbird | =0.6 | |
Mozilla SeaMonkey | =1.0.3 | |
Thunderbird | =0.7.2 | |
Firefox | =1.5-beta2 | |
Mozilla SeaMonkey | =1.0.1 | |
Mozilla SeaMonkey | =1.0.6 | |
Firefox | =1.5.0.6 | |
Thunderbird | =0.3 | |
Firefox | =1.5.0.3 | |
Thunderbird | =0.2 | |
Mozilla SeaMonkey | =1.0 | |
Thunderbird | =1.0.7 | |
Mozilla SeaMonkey | =1.0-beta | |
Firefox | =1.5-beta1 | |
Firefox | =1.5 | |
Thunderbird | =1.5.0.3 | |
Thunderbird | =1.5.0.6 | |
Thunderbird | =1.0 | |
Thunderbird | =1.0.1 | |
Thunderbird | =1.5-beta2 | |
Mozilla SeaMonkey | =1.0 | |
Mozilla SeaMonkey | =1.0.2 | |
Thunderbird | =1.0.2 | |
Firefox | =1.5.0.7 | |
Firefox | =2.0 | |
Thunderbird | =1.5 | |
Thunderbird | =1.5.0.2 | |
Mozilla SeaMonkey | =1.0.5 | |
Thunderbird | =1.5.0.8 | |
Firefox | =1.5.0.8 | |
Thunderbird | =0.5 | |
Thunderbird | =1.0.4 | |
Firefox | =1.5.0.5 | |
Thunderbird | =0.9 | |
Thunderbird | =1.0.3 | |
Firefox | =1.5.0.2 | |
Thunderbird | =0.7.3 | |
Thunderbird | =0.4 | |
Mozilla SeaMonkey | =1.0 | |
Thunderbird | =0.7 | |
Thunderbird | =1.0.6 | |
Thunderbird | =1.0.5-beta | |
Mozilla SeaMonkey | =1.0.4 | |
Firefox | =2.0-beta_1 | |
Thunderbird | =1.5.0.1 | |
Thunderbird | =1.0.8 | |
Thunderbird | =0.1 | |
Thunderbird | =0.7.1 | |
Thunderbird | =1.0.5 | |
Thunderbird | =0.8 | |
Firefox | =1.5.0.4 | |
Firefox | =1.5.0.1 | |
Thunderbird | =1.5.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2006-6502 is classified as a denial of service vulnerability.
To fix CVE-2006-6502, update to the latest versions of affected Mozilla software, such as Firefox 2.0.0.1, Thunderbird 1.5.0.9, or SeaMonkey 1.0.7.
CVE-2006-6502 affects Mozilla Firefox versions 2.x before 2.0.0.1, Thunderbird versions 1.5.x before 1.5.0.9, and SeaMonkey versions before 1.0.7.
Systems running affected versions of Mozilla Firefox, Thunderbird, or SeaMonkey are vulnerable to CVE-2006-6502.
Yes, CVE-2006-6502 can be exploited remotely by attackers, leading to application crashes.