CVE-2006-0297

Mozilla Firefox 1.5, Thunderbird 1.5, and SeaMonkey < 1.0 - Remote Code Execution via Integer Overflow

Title source: llm
STIX 2.1

Description

Multiple integer overflows in Mozilla Firefox 1.5, Thunderbird 1.5 if Javascript is enabled in mail, and SeaMonkey before 1.0 might allow remote attackers to execute arbitrary code via the (1) EscapeAttributeValue in jsxml.c for E4X, (2) nsSVGCairoSurface::Init in SVG, and (3) nsCanvasRenderingContext2D.cpp in Canvas.

References (13)

Core 13
Core References
Issue Tracking x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=319872
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18704
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/3749
Third Party Advisory, VDB Entry vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/16476
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/0413
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1015570
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/18700
Third Party Advisory, VDB Entry vendor-advisory x_refsource_hp
http://www.securityfocus.com/archive/1/446657/100/200/threaded
Issue Tracking x_refsource_confirm
https://bugzilla.mozilla.org/show_bug.cgi?id=322215
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A1339
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/24435
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22065

Scores

EPSS 0.0385
EPSS Percentile 89.0%

Details

Status published
Products (3)
mozilla/firefox 1.5 (2 CPE variants)
mozilla/seamonkey 1.0 (2 CPE variants)
mozilla/thunderbird 1.5
Published Feb 02, 2006
Tracked Since Feb 18, 2026