First published: Thu Mar 27 2008(Updated: )
Multiple unspecified vulnerabilities in Mozilla Firefox before 2.0.0.13, Thunderbird before 2.0.0.13, and SeaMonkey before 1.1.9 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unknown vectors related to the layout engine.
Credit: secalert@redhat.com
Affected Software | Affected Version | How to fix |
---|---|---|
Firefox | <=2.0.0.12 | |
Thunderbird | <=2.0.0.12 | |
Mozilla SeaMonkey | <=1.1.8 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2008-1236 is classified as a critical vulnerability that can lead to denial of service and potential arbitrary code execution.
To fix CVE-2008-1236, you should update Mozilla Firefox, Thunderbird, and SeaMonkey to the latest versions available.
CVE-2008-1236 affects Mozilla Firefox versions before 2.0.0.13, Thunderbird versions before 2.0.0.13, and SeaMonkey versions before 1.1.9.
The potential impacts of CVE-2008-1236 include crashes of affected applications and the possibility for remote attackers to execute arbitrary code.
CVE-2008-1236 is less of a risk for users of supported versions of the software, but it remains a concern for users of outdated versions.