|
|
Mozilla JavaScript Garbage Collector Code Execution Vulnerability |
|
Title : Mozilla JavaScript Garbage Collector Code Execution Vulnerability Advisory ID : FrSIRT/ADV-2008-1251 CVE ID : CVE-2008-1380
Rated as : Critical 
Remotely Exploitable : Yes Locally Exploitable : Yes Release Date : 2008-04-17
|
|
A vulnerability has been identified in Mozilla Firefox, Thunderbird and SeaMonkey, which could be exploited by remote attackers to cause a denial of service or compromise a vulnerable system [...]
Solution
Upgrade to Mozilla Firefox version 2.0.0.14 :
http://www.mozilla.com/firefox/
Upgrade to Mozilla Thunderbird version 2.0.0.14 :
http://www.mozilla.org/projects/thunderbird/
Upgrade to Mozilla SeaMonkey version 1.1.10 :
http://www.mozilla.org/projects/seamonkey/
Credits
Vulnerability reported by the vendor.
ChangeLog
2008-04-17 : Initial release
Vulnerability Management
Subscribe to FrSIRT VNS and receive real-time e-mail and SMS alerts when new vulnerabilities, exploits, or patches relevant to your systems and network configurations are available.
Feedback
If you have additional information or corrections for this security advisory please submit them via our contact form or by email to updates@frsirt.com.
| |
|