First published: Fri Jun 01 2007(Updated: )
Multiple vulnerabilities in the layout engine for Mozilla Firefox 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, Thunderbird 1.5.x before 1.5.0.12 and 2.x before 2.0.0.4, and SeaMonkey 1.0.9 and 1.1.2 allow remote attackers to cause a denial of service (crash) via vectors related to dangling pointers, heap corruption, signed/unsigned, and other issues.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Mozilla Thunderbird | =1.5.0.7 | |
Mozilla SeaMonkey | =1.0.3 | |
Mozilla Firefox | =1.5.2 | |
Mozilla Firefox | =1.5.0.6 | |
Mozilla SeaMonkey | =1.0.9 | |
Mozilla Firefox | =2.0.0.2 | |
Mozilla Firefox | =1.5.0.10 | |
Mozilla Firefox | =1.5.0.3 | |
Mozilla Firefox | =1.5.0.11 | |
Mozilla Firefox | =1.5.4 | |
Mozilla Firefox | =1.5 | |
Mozilla Thunderbird | =1.5.0.3 | |
Mozilla Thunderbird | =1.5.0.10 | |
Mozilla Thunderbird | =1.5.0.6 | |
Mozilla Thunderbird | =2.0.0.3 | |
Mozilla Firefox | =1.5.6 | |
Mozilla Thunderbird | =2.0.0.2 | |
Mozilla SeaMonkey | =1.1.2 | |
Mozilla Thunderbird | =2.0.0.0 | |
Mozilla Firefox | =1.5.0.7 | |
Mozilla Firefox | =2.0 | |
Mozilla Thunderbird | =1.5 | |
Mozilla Thunderbird | =1.5.0.2 | |
Mozilla Thunderbird | =1.5.0.8 | |
Mozilla Firefox | =1.5.0.8 | |
Mozilla Firefox | =2.0.0.3 | |
Mozilla Thunderbird | =1.5.2 | |
Mozilla Firefox | =1.5.0.9 | |
Mozilla Firefox | =1.5.0.5 | |
Mozilla Firefox | =1.5.7 | |
Mozilla Thunderbird | =1.5.0.9 | |
Mozilla Thunderbird | =1.5.0.11 | |
Mozilla Firefox | =1.5.0.2 | |
Mozilla Firefox | =1.5.1 | |
Mozilla Thunderbird | =1.5.1 | |
Mozilla Firefox | =2.0.0.1 | |
Mozilla SeaMonkey | =1.0.4 | |
Mozilla Firefox | =1.5.5 | |
Mozilla Thunderbird | =2.0.0.1 | |
Mozilla Thunderbird | =1.5.0.1 | |
Mozilla Firefox | =1.5.8 | |
Mozilla Firefox | =1.5.3 | |
Mozilla Firefox | =1.5.0.4 | |
Mozilla Firefox | =1.5.0.1 | |
Mozilla Thunderbird | =1.5.0.4 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2007-2867 has been classified as a critical vulnerability that allows for potential denial of service by causing application crashes.
To mitigate CVE-2007-2867, upgrade affected applications like Mozilla Firefox, Thunderbird, and SeaMonkey to their respective patched versions.
CVE-2007-2867 affects Mozilla Firefox versions prior to 1.5.0.12 and 2.0.0.4, Thunderbird before 1.5.0.12 and 2.0.0.4, and SeaMonkey versions 1.0.9 and 1.1.2.
Exploitation of CVE-2007-2867 typically leads to application crashes and can disrupt user workflows.
There have been indications that CVE-2007-2867 could be exploited, making it essential to ensure systems are updated to prevent potential attacks.