CVE-2008-5052: Critical severity firefox vulnerability
The AppendAttributeValue function in the JavaScript engine in Mozilla Firefox 2.x before 2.0.0.18, Thunderbird 2.x before 2.0.0.18, and SeaMonkey 1.x before 1.1.13 allows remote attackers to cause a denial of service (crash) via unknown vectors that trigger memory corruption, as demonstrated by e4x/extensions/regress-410192.js.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5052?
CVE-2008-5052 has a moderate severity rating due to its ability to cause denial of service through memory corruption.
How do I fix CVE-2008-5052?
To fix CVE-2008-5052, update to Mozilla Firefox 2.0.0.18, Mozilla Thunderbird 2.0.0.18, or SeaMonkey 1.1.13 or later.
Which versions are affected by CVE-2008-5052?
CVE-2008-5052 affects Mozilla Firefox versions prior to 2.0.0.18, Thunderbird versions prior to 2.0.0.18, and SeaMonkey versions prior to 1.1.13.
What kind of attacks can exploit CVE-2008-5052?
CVE-2008-5052 can be exploited by remote attackers to trigger a denial of service, specifically causing the application to crash.
Is CVE-2008-5052 a critical vulnerability?
CVE-2008-5052 is not classified as critical but poses significant risk due to its crash potential.