CVE-2008-5500: Integer Overflow
The layout engine in Mozilla Firefox 3.x before 3.0.5 and 2.x before 2.0.0.19, Thunderbird 2.x before 2.0.0.19, and SeaMonkey 1.x before 1.1.14 allows remote attackers to cause a denial of service (crash) and possibly trigger memory corruption via vectors related to (1) a reachable assertion or (2) an integer overflow.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2008-5500?
CVE-2008-5500 is classified as a denial of service vulnerability that can cause application crashes.
How do I fix CVE-2008-5500?
To mitigate CVE-2008-5500, update to the latest versions of Mozilla Firefox, Thunderbird, or SeaMonkey.
Which software versions are affected by CVE-2008-5500?
CVE-2008-5500 affects Mozilla Firefox versions before 3.0.5 and 2.0.0.19, Thunderbird versions before 2.0.0.19, and SeaMonkey versions before 1.1.14.
Can CVE-2008-5500 be exploited remotely?
Yes, remote attackers can exploit CVE-2008-5500 to trigger application crashes.
What types of attacks does CVE-2008-5500 enable?
CVE-2008-5500 enables denial of service attacks that may lead to application crashes and potential memory corruption.