Mozilla Firefox/SeaMonkey/Thunderbird 缓冲区错误漏洞

admin 2022-07-19 05:25:06 CNNVD漏洞 来源:ZONE.CI 全球网 0 阅读模式

漏洞信息详情

Mozilla Firefox/SeaMonkey/Thunderbird 缓冲区错误漏洞

  • CNNVD编号:CNNVD-200702-505
  • 危害等级: 高危
  • CVE编号: CVE-2007-0777
  • 漏洞类型: 缓冲区错误
  • 发布时间: 2007-02-26
  • 威胁类型: 远程
  • 更新时间: 2019-10-17
  • 厂        商: mozilla
  • 漏洞来源:

漏洞简介

Mozilla Firefox/SeaMonkey/Thunderbird都是Mozilla发布的WEB浏览器和邮件新闻组客户端产品。

Mozilla Firefox、Thunderbird和SeaMonkey中的Javascript引擎存在安全漏洞。攻击者可利用该漏洞造成拒绝服务并可能执行任意代码。以下产品及版本受到影响:Mozilla Firefox 1.5.0.10之前版本,2.x before 2.0.0.2之前的2.x版本;Thunderbird 1.5.0.10之前版本;SeaMonkey 1.0.8之前版本。

漏洞公告

目前厂商已经发布了升级补丁以修复这个安全问题,请到厂商的主页下载:

http://www.mozilla.com/products/download.HTML?product=Firefox-1.5.0.10&os=win&lang=en-US

http://www.mozilla.com/products/download.HTML?product=Firefox-2.0.0.2&os=linux&lang=en-US

http://www.mozilla.com/products/download.HTML?product=thunderbird-1.5.0.10&os=linux&lang=en-US

参考网址

来源:SECUNIA

链接:http://secunia.com/advisories/24437

来源:SECUNIA

链接:http://secunia.com/advisories/24238

来源:SLACKWARE

链接:http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.338131

来源:CERT-VN

链接:http://www.kb.cert.org/vuls/id/269484

来源:BID

链接:https://www.securityfocus.com/bid/22694

来源:CONFIRM

链接:https://issues.rpath.com/browse/RPL-1103

来源:SECTRACK

链接:http://www.securitytracker.com/id?1017698

来源:XF

链接:https://exchange.xforce.ibmcloud.com/vulnerabilities/32699

来源:GENTOO

链接:http://security.gentoo.org/glsa/glsa-200703-18.xml

来源:SUSE

链接:http://www.novell.com/linux/security/advisories/2007_22_mozilla.HTML

来源:REDHAT

链接:http://www.redhat.com/support/errata/RHSA-2007-0097.HTML

来源:SECUNIA

链接:http://secunia.com/advisories/24287

来源:SECUNIA

链接:http://secunia.com/advisories/24320

来源:UBUNTU

链接:http://www.ubuntu.com/usn/usn-431-1

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2008/0083

来源:SECUNIA

链接:http://secunia.com/advisories/24389

来源:UBUNTU

链接:http://www.ubuntu.com/usn/usn-428-1

来源:CONFIRM

链接:https://issues.rpath.com/browse/RPL-1081

来源:REDHAT

链接:http://rhn.redhat.com/errata/RHSA-2007-0077.HTML

来源:SECUNIA

链接:http://secunia.com/advisories/24395

来源:GENTOO

链接:http://www.gentoo.org/security/en/glsa/glsa-200703-08.xml

来源:OVAL

链接:https://oval.cisecurity.org/repository/search/definition/oval%3Aorg.mitre.oval%3Adef%3A11331

来源:SUSE

链接:http://lists.suse.com/archive/suse-security-announce/2007-Mar/0001.HTML

来源:FEDORA

链接:http://fedoranews.org/CMS/node/2728

来源:SECUNIA

链接:http://secunia.com/advisories/24393

来源:SECUNIA

链接:http://secunia.com/advisories/24455

来源:SECUNIA

链接:http://secunia.com/advisories/24333

来源:SECUNIA

链接:http://secunia.com/advisories/24410

来源:MANDRIVA

链接:http://www.mandriva.com/security/advisories?name=MDKSA-2007:052

来源:SECUNIA

链接:http://secunia.com/advisories/24457

来源:SECUNIA

链接:http://secunia.com/advisories/24456

来源:MANDRIVA

链接:http://www.mandriva.com/security/advisories?name=MDKSA-2007:050

来源:FEDORA

链接:http://fedoranews.org/CMS/node/2713

来源:REDHAT

链接:http://www.redhat.com/support/errata/RHSA-2007-0108.HTML

来源:REDHAT

链接:http://www.redhat.com/support/errata/RHSA-2007-0078.HTML

来源:SLACKWARE

链接:http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.374851

来源:SECUNIA

链接:http://secunia.com/advisories/24384

来源:OSVDB

链接:http://www.osvdb.org/32115

来源:SECUNIA

链接:http://secunia.com/advisories/24343

来源:SECUNIA

链接:http://secunia.com/advisories/24342

来源:BUGTRAQ

链接:http://www.securityfocus.com/archive/1/461809/100/0/threaded

来源:SLACKWARE

链接:http://slackware.com/security/viewer.php?l=slackware-security&y=2007&m=slackware-security.363947

来源:SECUNIA

链接:http://secunia.com/advisories/24205

来源:SECUNIA

链接:http://secunia.com/advisories/24406

来源:SECUNIA

链接:http://secunia.com/advisories/24328

来源:HP

链接:http://h20000.www2.hp.com/bizsupport/TechSupport/Document.jsp?objectID=c00771742

来源:SECUNIA

链接:http://secunia.com/advisories/24522

来源:BUGTRAQ

链接:http://www.securityfocus.com/archive/1/461336/100/0/threaded

来源:CONFIRM

链接:http://www.mozilla.org/security/announce/2007/mfsa2007-01.HTML

来源:FEDORA

链接:http://fedoranews.org/CMS/node/2747

来源:SECUNIA

链接:http://secunia.com/advisories/24290

来源:SECUNIA

链接:http://secunia.com/advisories/24252

来源:SECUNIA

链接:http://secunia.com/advisories/24650

来源:GENTOO

链接:http://security.gentoo.org/glsa/glsa-200703-04.xml

来源:REDHAT

链接:http://www.redhat.com/support/errata/RHSA-2007-0079.HTML

来源:SECUNIA

链接:http://secunia.com/advisories/24293

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2007/0719

来源:FEDORA

链接:http://fedoranews.org/CMS/node/2749

来源:VUPEN

链接:http://www.vupen.com/english/advisories/2007/0718

受影响实体

  • Mozilla Firefox:2.0.0.1  
  • Mozilla Seamonkey:1.0.7  
  • Mozilla Thunderbird:1.5.0.9  
  • Mozilla Firefox:1.5.0.9  

补丁

  • Mozilla Firefox、SeaMonkey和Thunderbird 缓冲区错误漏洞的修复措施

weinxin
特别声明
本站(ZONE.CI)所有文章仅供技术研究,若将其信息做其他用途,由用户承担全部法律及连带责任,本站不承担任何法律及连带责任,请遵守中华人民共和国安全法.
评论:0   参与:  0