CVE-2006-5748

Mozilla Firefox, Thunderbird, and SeaMonkey - Remote Code Execution via JavaScript Engine Memory Corruption

Title source: llm
STIX 2.1

Description

Multiple unspecified vulnerabilities in the JavaScript engine in Mozilla Firefox before 1.5.0.8, Thunderbird before 1.5.0.8, and SeaMonkey before 1.0.6 allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via unspecified vectors that trigger memory corruption.

References (66)

Core 66
Core References
Patch vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017178
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/27603
Patch vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017179
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23235
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23013
Patch, Vendor Advisory x_refsource_confirm
http://www.mozilla.org/security/announce/2006/mfsa2006-65.html
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-66-201335-1
Vendor Advisory vendor-advisory x_refsource_sunalert
http://sunsolve.sun.com/search/document.do?assetkey=1-26-103139-1
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=352271
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=354145
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=354151
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=352606
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=351973
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=353165
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/3748
Third Party Advisory vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200612-08.xml
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/451099/100/0/threaded
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22770
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/30096
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2006/4387
Patch, Vendor Advisory vendor-advisory x_refsource_debian
http://www.debian.org/security/2006/dsa-1225
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=349527
Issue Tracking x_refsource_confirm
https://issues.rpath.com/browse/RPL-765
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23009
Patch, US Government Resource third-party-advisory x_refsource_cert
http://www.us-cert.gov/cas/techalerts/TA06-312A.html
Patch vendor-advisory x_refsource_debian
http://www.debian.org/security/2006/dsa-1227
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=350238
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22980
Patch, Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2006-0733.html
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/24711
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23263
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22763
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22965
Patch vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-382-1
Patch, US Government Resource third-party-advisory x_refsource_cert-vn
http://www.kb.cert.org/vuls/id/390480
Patch vdb-entry x_refsource_sectrack
http://securitytracker.com/id?1017177
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/0083
Patch, Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2006-0735.html
Patch vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200612-07.xml
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/1198
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23297
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22727
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22815
Patch, Vendor Advisory vendor-advisory x_refsource_redhat
http://rhn.redhat.com/errata/RHSA-2006-0734.html
Various Sources vendor-advisory x_refsource_hp
http://www1.itrc.hp.com/service/cki/docDisplay.do?docId=c00771742
Third Party Advisory, VDB Entry vdb-entry signature x_refsource_oval
https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11408
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22737
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22929
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23202
Patch vendor-advisory x_refsource_gentoo
http://security.gentoo.org/glsa/glsa-200612-06.xml
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDKSA-2006:206
Patch vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/20957
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23197
Patch vendor-advisory x_refsource_debian
http://www.debian.org/security/2006/dsa-1224
Third Party Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2007/3821
Third Party Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22066
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22774
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22817
Patch, Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/22722
Issue Tracking x_refsource_misc
https://bugzilla.mozilla.org/show_bug.cgi?id=351116
Vendor Advisory vendor-advisory x_refsource_mandriva
http://www.mandriva.com/security/advisories?name=MDKSA-2006:205
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/23287
Patch, Vendor Advisory vendor-advisory x_refsource_ubuntu
http://www.ubuntu.com/usn/usn-381-1

Scores

EPSS 0.0552
EPSS Percentile 91.9%

Details

Status published
Products (25)
mozilla/firefox 1.5 (3 CPE variants)
mozilla/firefox 1.5.0.1
mozilla/firefox 1.5.0.2
mozilla/firefox 1.5.0.3
mozilla/firefox 1.5.0.4
mozilla/firefox 1.5.0.5
mozilla/firefox 1.5.0.6
mozilla/firefox 1.5.0.7
mozilla/seamonkey 1.0 (2 CPE variants)
mozilla/seamonkey 1.0.1
... and 15 more
Published Nov 08, 2006
Tracked Since Feb 18, 2026