CVE-2008-0304: Buffer Overflow
Heap-based buffer overflow in Mozilla Thunderbird before 2.0.0.12 and SeaMonkey before 1.1.8 might allow remote attackers to execute arbitrary code via a crafted external-body MIME type in an e-mail message, related to an incorrect memory allocation during message preview.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2008-0304?
CVE-2008-0304 is rated as a critical vulnerability due to its potential for remote code execution.
How do I fix CVE-2008-0304?
To fix CVE-2008-0304, upgrade to Mozilla Thunderbird version 2.0.0.12 or later, or SeaMonkey version 1.1.8 or later.
What software is affected by CVE-2008-0304?
CVE-2008-0304 affects Mozilla Thunderbird versions prior to 2.0.0.12 and SeaMonkey versions prior to 1.1.8.
What kind of attack can exploit CVE-2008-0304?
CVE-2008-0304 can be exploited by attackers sending crafted e-mail messages with specific external-body MIME types.
What are the potential consequences of CVE-2008-0304?
The consequences of CVE-2008-0304 include the ability for an attacker to execute arbitrary code on a victim's machine.